ZeroHour

CVE-2017-2777

PoC
CVSS 3.0
7.8 high
EPSS
1%p62
Published
()
Modified
Description

An exploitable heap overflow vulnerability exists in the ipStringCreate function of Iceni Argus Version 6.6.05. A specially crafted pdf file can cause an integer overflow resulting in heap overflow. An attacker can send file to trigger this vulnerability.

Vendors
iceni
Products
argus
Weakness
CWE-190
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news