CVSS v3
9.8
CRITICAL
EPSS Score
80.6%
exploit probability
CISA KEV
No
known exploited
Exploitation
—
SSVC status
Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a stack-based buffer overflow in the "udadmin" service that can lead to remote code execution as the root user.
Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a stack-based buffer overflow in the "udadmin" service that can lead to remote code execution as the root user.
Active exploitation of CVE-2023-28502 has not been confirmed. The EPSS score is 80.6%, indicating the estimated probability of exploitation in the next 30 days.
CVE-2023-28502 has a CVSS v3 base score of 9.8 (CRITICAL severity).
Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.
Ranked by exploit probability (EPSS).