PT-2022-28141 · Unknown · Modbus Tools Modbus Slave

·

CVE-2022-4856

·

Published

2022-12-30

·

Updated

2024-05-17

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Modbus Tools Modbus Slave versions up to 7.5.1
Description A critical issue has been found in the mbs File Handler component, specifically in the file mbslave.exe, leading to a buffer overflow. This can be exploited remotely. The issue affects an unknown functionality of the file.
Recommendations For versions up to 7.5.1, consider disabling the mbslave.exe file or restricting access to the mbs File Handler component until a patch is available. As a temporary workaround, avoid using the affected functionality of the file mbslave.exe to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this issue.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-4856

Affected Products

Modbus Tools Modbus Slave