CVE-2022-26507
high-risk
Published 2022-04-14
A heap-based buffer overflow exists in XML Decompression DecodeTreeBlock in AT&T Labs Xmill 0.7. A crafted input file can lead to remote code execution. This is not the same as any of: CVE-2021-21810, CVE-2021-21811, CVE-2021-21812, CVE-2021-21815, CVE-2021-21825, CVE-2021-21826, CVE-2021-21828, CVE-2021-21829, or CVE-2021-21830. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
Do I need to act?
~
6.7% chance of exploitation in next 30 days
EPSS score — moderate exploit probability
-
Not on CISA KEV list
No confirmed active exploitation reported to CISA
?
Patch status unknown
Check vendor advisories for fix availability and mitigation guidance
9
CVSS 9.8/10
Critical
NETWORK
/ LOW complexity
Affected Products (5)
Xmill
Ecostruxure Process Expert
Remoteconnect
Affected Vendors
References (4)
Not Applicable
https://Claroty.com
Not Applicable
https://Claroty.com
53
/ 100
high-risk
Severity
32/34 · Critical
Exploitability
9/34 · Low
Exposure
12/34 · Low