Back to search
CVE-2023-28505
Published: Mar 29, 2023
Modified: Feb 18, 2025
PUBLISHED
Description
Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a buffer overflow in an API function, where a string is copied into a caller-provided buffer without checking the length. This requires a valid login to exploit.
| Vendor | Product | Versions |
|---|---|---|
Rocket Software | UniData | affected 0 - < 8.2.43.3003 |
Rocket Software | UniVerse | affected 0 - < 11.3.5.1001affected 0 - < 12.2.1.2002 |
Weaknesses (CWE)
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now