Security Advisory

CVE-2022-28711

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-04-14 19:56:41
Last updated 2025-04-15 19:05:30
Assigner talos
CVSS score 5.3
State PUBLISHED

Description

A memory corruption vulnerability exists in the cgi.c unescape functionality of ArduPilot APWeb master branch 50b6b7ac - master branch 46177cb9. A specially-crafted HTTP request can lead to memory corruption. An attacker can send a network request to trigger this vulnerability.