First published: Thu Nov 23 2023(Updated: )
There is a buffer overflow vulnerability in a web browser plug-in could allow an attacker to exploit the vulnerability by sending crafted messages to computers installed with this plug-in, which could lead to arbitrary code execution or cause process exception of the plug-in.
Credit: hsrc@hikvision.com
Affected Software | Affected Version | How to fix |
---|---|---|
LocalServiceComponents | <=1.0.0.78 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-28812 is a buffer overflow vulnerability in a web browser plug-in that could allow an attacker to execute arbitrary code or cause process exceptions.
CVE-2023-28812 has a severity rating of 9.1 (critical).
The affected software is Hikvision Localservicecomponents version 1.0.0.78.
An attacker can exploit CVE-2023-28812 by sending crafted messages to computers with the vulnerable plug-in installed.
It is recommended to update the Hikvision Localservicecomponents plug-in to a version that is not vulnerable to CVE-2023-28812.