VYPR

snap7

by Davenardella

CVEs (3)

  • CVE-2026-90572MedSep 13, 2026
    risk 0.31cvss 4.7epss 0.00

    A vulnerability was determined in davenardella snap7 up to 1.4.3. The affected element is the function TSnap7MicroClient::opUpload of the file src/core/s7_micro_client.cpp. Executing a manipulation of the argument DataLen can lead to memory corruption. The attack can be executed…

  • CVE-2026-16225MedJul 19, 2026
    risk 0.00cvss 6.3epss 0.00

    A security flaw has been discovered in davenardella snap7 up to 1.4.3. The impacted element is the function TSnap7Peer::NegotiatePDULength of the file src/core/s7_peer.cpp. The manipulation of the argument PDULength results in out-of-bounds write. The attack can be executed…

  • CVE-2026-15105MedJul 8, 2026
    risk 0.00cvss 6.3epss 0.00

    A flaw has been found in davenardella snap7 up to 1.4.3. This affects the function TS7Worker::PerformFunctionRead of the file src/core/s7_server.cpp of the component ReadVar Request Handler. This manipulation causes out-of-bounds write. The attack requires access to the local…