CVE-2022-35217
EUVD-2022-3810902.08.2022, 16:15
The NHI card’s web service component has a stack-based buffer overflow vulnerability due to insufficient validation for network packet header length. A local area network attacker with general user privilege can exploit this vulnerability to execute arbitrary code, manipulate system command or disrupt service.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| nhi | health_insurance_web_service_component | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration