CVE-2022-3385: Buffer Overflow
Published Oct 27, 2022
·Updated
Advantech R-SeeNet Versions 2.4.17 and prior are vulnerable to a stack-based buffer overflow. An unauthorized attacker can remotely overflow the stack buffer and enable remote code execution.
Affected Software
3 affected components
Advantech R-SeeNet<=2.4.17
Advantech Version 2.4.19 and prior
Advantech Version 2.4.17 and prior (CVE-2022-3386 and CVE-2022-3385 only)
Event History
Oct 27, 2022
CVE Published
via MITRE·08:16 PM
Data Sourced
via MITRE·08:16 PM
DescriptionSeverityWeakness
Aug 3, 2024
Data Sourced
via ICS·01:17 AM
SeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2022-3385.
2
What is the severity of CVE-2022-3385?
CVE-2022-3385 has a severity rating of 9.8 (critical).
3
Which software versions are affected by CVE-2022-3385?
Advantech R-SeeNet versions up to and including 2.4.17 are affected by CVE-2022-3385.
4
What is the vulnerability type of CVE-2022-3385?
CVE-2022-3385 is a stack-based buffer overflow vulnerability.
5
How can an attacker exploit CVE-2022-3385?
An unauthorized attacker can remotely overflow the stack buffer and enable remote code execution in CVE-2022-3385.