CVE-2025-14673

🟡 Monitoruj

Przepełnienie bufora w snap7-rs umożliwia zdalne wykonanie kodu.

CVSS
7.3
EPSS
0.5%
Exploit
poc
Vendor
gmg137
Opis źródłowy (NVD)

A vulnerability has been found in gmg137 snap7-rs up to 1.142.1. Affected is the function snap7_rs::client::S7Client::as_ct_write of the file /tests/snap7-rs/src/client.rs. The manipulation leads to heap-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

buffer-overflow exploit Brak patcha
Źródła i daty
ŹródłoWartość
NVD – CVSS7.3
CISA KEV (aktywnie wykorzystywane)Nie
FIRST EPSS (prawdopodobieństwo exploita)0.5%
Opublikowano (NVD)2025-12-14 18:15:43 UTC
Ostatnia modyfikacja (NVD)2026-09-28 10:10:00 UTC
Referencje