CVSS v3
9.8
CRITICAL
EPSS Score
51.6%
exploit probability
CISA KEV
No
known exploited
Exploitation
—
SSVC status
An exploitable code execution vulnerability exists in the HTTP packet-parsing functionality of the LIVE555 RTSP server library version 0.92. A specially crafted packet can cause a stack-based buffer overflow, resulting in code execution. An attacker can send a packet to trigger this vulnerability.
An exploitable code execution vulnerability exists in the HTTP packet-parsing functionality of the LIVE555 RTSP server library version 0.92. A specially crafted packet can cause a stack-based buffer overflow, resulting in code execution. An attacker can send a packet to trigger this vulnerability.
Active exploitation of CVE-2018-4013 has not been confirmed. The EPSS score is 51.6%, indicating the estimated probability of exploitation in the next 30 days.
CVE-2018-4013 has a CVSS v3 base score of 9.8 (CRITICAL severity).
Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.
Ranked by exploit probability (EPSS).