TROYANOSYVIRUS
Retour aux CVEs

CVE-2019-7712

N/A

Description

An issue was discovered in handler_ipcom_shell_pwd in the Interpeak IPCOMShell TELNET server on Green Hills INTEGRITY RTOS 5.0.4. When using the pwd command, the current working directory path is used as the first argument to printf() without a proper check. An attacker may thus forge a path containing format string modifiers to get a custom format string evaluated. This results in an information leak of memory addresses.

Details CVE

Score CVSS v3.1N/A
Publie3/26/2019
Derniere modification11/21/2024
Sourcenvd
Observations honeypot0

Produits affectes

ghs:integrity_rtos

Faiblesses (CWE)

CWE-134

References

Correlations IOC

Aucune correlation enregistree

This product uses data from the NVD API but is not endorsed or certified by the NVD.