Buffer Overflow Vulnerability in COMOS by Siemens
CVE-2023-24482
10CRITICAL
Key Information:
- Vendor
Siemens
- Vendor
- CVE Published:
- 14 February 2023
What is CVE-2023-24482?
A vulnerability exists in the cache validation service of COMOS software, which is susceptible to a Structured Exception Handler (SEH) based buffer overflow. An attacker could exploit this vulnerability to execute arbitrary code on impacted systems or potentially induce a denial of service condition, leading to significant disruption in operations. Users of various COMOS versions should immediately evaluate their current systems and apply necessary patches to mitigate risks associated with this vulnerability.
Affected Version(s)
COMOS V10.2 All versions
COMOS V10.3.3.1 All versions < V10.3.3.1.45
COMOS V10.3.3.2 All versions < V10.3.3.2.33