An access violation vulnerability exists in the eventcore functionality of Milesight UR32L v32.3.0.5. A specially crafted network request can lead to denial of service. An attacker can send a network request to trigger this vulnerability.
The product reads from a buffer using buffer access mechanisms such as indexes or pointers that reference memory locations after the targeted buffer.
Link | Tags |
---|---|
https://talosintelligence.com/vulnerability_reports/TALOS-2023-1696 | third party advisory exploit |
https://www.talosintelligence.com/vulnerability_reports/TALOS-2023-1696 |