CHANGING Inc. NHIServiSignAdapter Windows Versions - Stack Overflow
Vulnerability Description
The digest generation function of NHIServiSignAdapter has not been verified for parameter’s length, which leads to a stack overflow loophole. Remote attackers can use the leak to execute code without privilege.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-25844
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- DEVORE
More from CHANGING Inc.
View All →Affected Vendor
CHANGING Inc.
View all reports →