VYPR
High severity7.5NVD Advisory· Published Mar 22, 2023· Updated Jun 17, 2026

CVE-2023-27857

CVE-2023-27857

Description

In affected versions, a heap-based buffer over-read condition occurs when the message field indicates more data than is present in the message field

in Rockwell Automation's ThinManager ThinServer.  An unauthenticated remote attacker can exploit this vulnerability to crash ThinServer.exe due to a read access violation.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • cpe:2.3:a:rockwellautomation:thinmanager:*:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:rockwellautomation:thinmanager:*:*:*:*:*:*:*:*range: >=11.0.0,<11.0.5
    • cpe:2.3:a:rockwellautomation:thinmanager:13.0.0:*:*:*:*:*:*:*
    • (no CPE)
    • (no CPE)range: 6.x - 10.x

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.