📦

syslog-ng_store_box

Vendor: oneidentity

Actively Exploited 0 CISA KEV List
PoC / Exploits 1 Code Available
Total RCEs 0 Remote Access
Total CVEs 1 Total Indexed
Avg. EPSS 2.38% Exploit Prob.
Latest CVE CVE-2022-38725 Jan 23

Security Vulnerability Index

Page 1 / 1
7.5 CVSS
CVE-2022-38725
Exploit Found

An integer overflow in the RFC3164 parser in One Identity syslog-ng 3.0 through 3.37 allows remote attackers to cause a Denial of Service via crafted syslog input that is mishandled by the tcp or network function. syslog-ng Premium Edition 7.0.30 and syslog-ng Store Box 6.10.0 are also affected.

EPSS: 2.38%