High severity7.5NVD Advisory· Published Mar 22, 2023· Updated Jun 17, 2026
CVE-2023-27857
CVE-2023-27857
Description
In affected versions, a heap-based buffer over-read condition occurs when the message field indicates more data than is present in the message field
in Rockwell Automation's ThinManager ThinServer. An unauthenticated remote attacker can exploit this vulnerability to crash ThinServer.exe due to a read access violation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:rockwellautomation:thinmanager:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:rockwellautomation:thinmanager:*:*:*:*:*:*:*:*range: >=11.0.0,<11.0.5
- cpe:2.3:a:rockwellautomation:thinmanager:13.0.0:*:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: 6.x - 10.x
Patches
Vulnerability mechanics
References
1- rockwellautomation.custhelp.com/app/answers/answer_view/a_id/1138640nvdVendor Advisory
News mentions
0No linked articles in our index yet.