← Back to browse · API

CVE-2021-38432

Severity
CRITICAL
CVSS
9.8
EPSS
0.0187
Risk score
39.85
CISA KEV
No
PoC
No
Published
2021-10-15
Modified
2024-09-16
First seen
2026-08-07
Aliases
EUVD-2021-24884, GHSA-2QJG-MR5R-C2HW
Products
FATEK Automation:Communication Server All ≤1.13
Sources
euvd EUVD-2021-24884

Description

FATEK Automation Communication Server Versions 1.13 and prior lacks proper validation of user-supplied data, which could result in a stack-based buffer overflow condition and allow an attacker to remotely execute code.

References