Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-10071

The Zephyr MQTT parsing code performs insufficient checking of the length field on publish messages, allowing a buffer overflow and potentially remote code execution. NCC-ZEP-031 This issue affects: zephyrproject-rtos zephyr version 2.2.0 and later versions.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.139
EPSS Ranking 94.0%
CVSS Severity
CVSS v3 Score 9.0
CVSS v2 Score 7.5
Products affected by CVE-2020-10071


Contact Us

Shodan ® - All rights reserved