go to Content
:::

TWCERT/CC Taiwan Computer Emergency Response Team/Coordination Center

:::
Date:
Font-stze:

NHI card’s web service component - Stack-based Buffer Overflow-2

TVN ID TVN-202207003
CVE ID CVE-2022-35219
CVSS 5.5 (Medium)
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Affected Products Windows:
Setup.zip MD5:dae0509e5aabde2f110ce8418af67cf7
Description The NHI card’s web service component has a stack-based buffer overflow vulnerability due to insufficient validation for network packet key parameter. A LAN attacker with general user privilege can exploit this vulnerability to disrupt service.
Solution Download the latest version
Credit how2hack (CCoE)
Public Date 2022-07-29
Top