Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Out-of-bounds read vulnerability in Circutor SGE-PLC1000/SGE-PLC50
Vulnerability Description
Out-of-bounds read vulnerability in Circutor SGE-PLC1000/SGE-PLC50 v9.0.2. The 'DownloadFile' function converts a parameter to an integer using 'atoi()' and then uses it as an index in the 'FilesDownload' array with '(&FilesDownload)[iVar2]'. If the parameter is too large, it will access memory beyond the limits.
CVSS Information
N/A
Vulnerability Type
跨界内存读
Vulnerability Title
CIRCUTOR SGE-PLC1000和CIRCUTOR SGE-PLC50 缓冲区错误漏洞
Vulnerability Description
CIRCUTOR SGE-PLC1000和CIRCUTOR SGE-PLC50都是西班牙CIRCUTOR公司的一个网络集中器。 CIRCUTOR SGE-PLC1000和CIRCUTOR SGE-PLC50 v9.0.2版本存在缓冲区错误漏洞,该漏洞源于DownloadFile函数未验证参数范围,可能导致越界读取。
CVSS Information
N/A
Vulnerability Type
N/A