CyberSec.Space Logo
Back to CVE Browser

CVE-2019-7715

HIGH
7.5
CVSS Severity Score
EPSS Score0.1820%
EPSS Percentile41.77th
PublishedMar 26, 2019
Last ModifiedNov 21, 2024

Vulnerability Description

An issue was discovered in the Interpeak IPCOMShell TELNET server on Green Hills INTEGRITY RTOS 5.0.4. The main shell handler function uses the value of the environment variable ipcom.shell.greeting as the first argument to printf(). Setting this variable using the sysvar command results in a user-controlled format string during login, resulting in an information leak of memory addresses.

Affected Platforms (CPE)

πŸ’»
Ghs

Integrity Rtos

= 5.0.4

References & Advisories

Related Vulnerabilities

CVE-2019-7715 Detail & Impact Analysis | CVSS 7.5 (HIGH) | Cyber-Sec.Space | Cyber-Sec.Space