CVE-2023-28812: Buffer Overflow
There is a buffer overflow vulnerability in a web browser plug-in could allow an attacker to exploit the vulnerability by sending crafted messages to computers installed with this plug-in, which could lead to arbitrary code execution or cause process exception of the plug-in.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-28812?
CVE-2023-28812 is a buffer overflow vulnerability in a web browser plug-in that could allow an attacker to execute arbitrary code or cause process exceptions.
How severe is CVE-2023-28812?
CVE-2023-28812 has a severity rating of 9.1 (critical).
What is the affected software for CVE-2023-28812?
The affected software is Hikvision Localservicecomponents version 1.0.0.78.
How can an attacker exploit CVE-2023-28812?
An attacker can exploit CVE-2023-28812 by sending crafted messages to computers with the vulnerable plug-in installed.
Is there a fix available for CVE-2023-28812?
It is recommended to update the Hikvision Localservicecomponents plug-in to a version that is not vulnerable to CVE-2023-28812.