CVE-2010-2965

Description

The WDB target agent debug service in Wind River VxWorks 6.x, 5.x, and earlier, as used on the Rockwell Automation 1756-ENBT series A with firmware 3.2.6 and 3.6.1 and other products, allows remote attackers to read or modify arbitrary memory locations, perform function calls, or manage tasks via requests to UDP port 17185, a related issue to CVE-2005-3804.

Risk Information

Base Score
9.8
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
59.953

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in Wind River VxWorks 5Windows
Multiple Vulnerabilities are affected in Wind River VxWorks 5.5Windows
Multiple Vulnerabilities are affected in Wind River VxWorks 6.4Windows
Vulnerabilities CVE-2010-2965,CVE-2010-2966,CVE-2010-2967,CVE-2010-2968 are affected in Wind River VxWorks 6Windows
Multiple Vulnerabilities are affected in Wind River VxWorks 6.8Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234