Skip to main content

CVE-2022-38742

8.1
HIGHCVSS v3.1 Base Score
6.28%
LOW RiskEPSS (91st percentile)

Rockwell Automation ThinManager ThinServer versions 11.0.0 - 13.0.0 is vulnerable to a heap-based buffer overflow. An attacker could send a specifically crafted TFTP or HTTPS request, causing a heap-based buffer overflow that crashes the ThinServer process. If successfully exploited, this could expose the server to arbitrary remote code execution.

Published: 9/23/2022
Modified: 11/21/2024
Back to CVE Lookup

Vulnerability Summary

CVSS v3 Score

8.1HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS Score (Exploitation Probability)

6.28%LOW Exploitation Risk
91st percentile

This vulnerability has a 6.28% probability of being exploited in the next 30 days, ranking higher than 91% of all scored CVEs.

Related Vulnerabilities