Mz Automation lib60870是德国Mz Automation公司的一款实现IEC 60870协议的通信库。 Mz Automation lib60870 2.4.0及之前版本存在缓冲区错误漏洞,该漏洞源于存在越界读取,可能导致攻击者崩溃解析进程并造成拒绝服务。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| MZ Automation | lib60870 | ≤ 2.4.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| MZ Automation | lib60870 | 0 ~ 2.4.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-49035 | 8.1 HIGH | Stack-based Buffer Overflow in MZ Automation libIEC61850 |
| CVE-2026-50039 | 7.5 HIGH | Stack-based Buffer Overflow in MZ Automation libIEC61850 |
| CVE-2026-50032 | 7.5 HIGH | NULL Pointer Dereference in MZ Automation libIEC61850 |
| CVE-2026-50103 | 6.5 MEDIUM | Improper Handling of Syntactically Invalid Structure in MZ Automation libIEC61850 |
No comments yet