CyberSec.Space Logo
CVEブラウザに戻る

CVE-2019-7715

HIGH
7.5
CVSS Severity Score
EPSS Score0.1820%
EPSS Percentile41.77th
Published2019年3月26日
Last Modified2024年11月21日

Vulnerability Description

An issue was discovered in the Interpeak IPCOMShell TELNET server on Green Hills INTEGRITY RTOS 5.0.4. The main shell handler function uses the value of the environment variable ipcom.shell.greeting as the first argument to printf(). Setting this variable using the sysvar command results in a user-controlled format string during login, resulting in an information leak of memory addresses.

Affected Platforms (CPE)

💻
Ghs

Integrity Rtos

= 5.0.4

References & Advisories

関連する脆弱性情報