VDB

CVE-2023-7104

CVE-2023-7104 PUBLISHED CVSS 5.5 MEDIUM

A vulnerability was found in SQLite SQLite3 up to 3.43.0 and classified as critical. This issue affects the function sessionReadRecord of the file ext/session/sqlite3session.c of the component make alltest Handler. The manipulation leads to heap-based buffer overflow. It is recommended to apply a patch to fix this issue.

EPSS 1.25% · 68.3th percentile

Risk Scores

CVSS 3.1
5.5
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
EPSS Score
1.25%
68.3th percentile

Affected Products

VendorProductVersions
ABBABB B&R Automation Studio <6.5
ABBB&R Industrial Automation GmbH Automation Studio <6.5
ABBABB Ability Camera Connect <=2.0.0.42

Timeline

  • Dec 25, 2023 CVE Published
  • Dec 26, 2023 EPSS Score
  • Jan 24, 2024 EPSS Score
  • Feb 23, 2024 EPSS Score
  • Apr 21, 2024 EPSS Score
  • May 21, 2024 EPSS Score
  • Jun 19, 2024 EPSS Score
  • Jul 3, 2024 PoC Published
  • Jul 18, 2024 EPSS Score
  • Sep 15, 2024 EPSS Score
  • Oct 5, 2024 Coalition ESS Score
  • Oct 14, 2024 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›