CVE Database
/

CVE-2023-28505

Back to search

CVE-2023-28505

Published: Mar 29, 2023

Modified: Feb 18, 2025

PUBLISHED

Description

Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a buffer overflow in an API function, where a string is copied into a caller-provided buffer without checking the length. This requires a valid login to exploit.

VendorProductVersions

Rocket Software

UniData

affected
0 - < 8.2.43.3003

Rocket Software

UniVerse

affected
0 - < 11.3.5.1001
affected
0 - < 12.2.1.2002

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now