Back to search
CVE-2023-28506
Published: Mar 29, 2023
Modified: Feb 18, 2025
PUBLISHED
Description
Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a stack-based buffer overflow, where a string is copied into a buffer using a memcpy-like function and a user-provided length. This requires a valid login to exploit.
| Vendor | Product | Versions |
|---|---|---|
Rocket Software | UniData | affected 0 - < 8.2.43.3003 |
Rocket Software | UniVerse | affected 0 - < 11.3.5.1001affected 0 - < 12.2.1.2002 |
Weaknesses (CWE)
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now