Vulnerability CVE-2022-38371


Published: 2022-10-11

Description:
A vulnerability has been identified in Nucleus NET (All versions), Nucleus ReadyStart V3 (All versions), Nucleus Source Code (Versions including affected FTP server). The FTP server does not properly release memory resources that were reserved for incomplete connection attempts by FTP clients. This could allow a remote attacker to generate a denial of service condition on devices that incorporate a vulnerable version of the FTP server.

Type:

CWE-400

(Uncontrolled Resource Consumption ('Resource Exhaustion'))

 References:
https://cert-portal.siemens.com/productcert/pdf/ssa-935500.pdf
https://cert-portal.siemens.com/productcert/pdf/ssa-313313.pdf

Copyright 2023, cxsecurity.com

 

Back to Top