VDB
CVE-2015-8277
CVE-2015-8277
PUBLISHED
CVSS 10 CRITICAL
Multiple buffer overflows in (1) lmgrd and (2) Vendor Daemon in Flexera FlexNet Publisher before 11.13.1.2 Security Update 1 allow remote attackers to execute arbitrary code via a crafted packet with opcode (a) 0x107 or (b) 0x10a.
EPSS 77.56% · 99.0th percentile
Risk Scores
CVSS 2.0
10
EPSS Score
77.56%
99.0th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Citrix | N/A | |
| flexerasoftware | flexnet_publisher | 0 |
| n/a | n/a | n/a |
Timeline
- Feb 24, 2016 CVE Published
- Feb 4, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 2, 2023 EPSS Score
- May 25, 2023 EPSS Score
- Jul 16, 2023 EPSS Score
- Oct 29, 2023 EPSS Score
- Dec 21, 2023 EPSS Score
References
- https://sw.aveva.com/hubfs/assets-2018/pdf/security-bulletin/SecurityBulletin_LFSec129.pdf url
- http://securitymumblings.blogspot.com/2016/02/cve-2015-8277.html url
- https://rockwellautomation.custhelp.com/app/answers/detail/a_id/1073133 url
- https://ics-cert.us-cert.gov/advisories/ICSA-18-212-05 url
- 1035266 vdb
- http://support.citrix.com/article/CTX207824 url
- VU#485744 third-party-advisory
- https://www.securifera.com/advisories/cve-2015-8277 url
- https://ics-cert.us-cert.gov/advisories/ICSA-18-102-02 url
- 83334 vdb
- https://nvd.nist.gov/vuln/detail/CVE-2015-8277 advisory