← nejvýznamnější zprávy · všechny zprávy

EPSS 0.01

lwIP TCP/IP Stack MQTT Client Application

View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to gain full code execution on the device. The following versions of lwIP TCP/IP Stack MQTT Client Application are affected: MQTT Client Application >=2.0.1|<=2.2.1 (CVE-2026-87121) CVSS Vendor Equipment Vulnerabilities v3 9.8 lwIP lwIP TCP/IP Stack MQTT Client Application Out-of-bounds Write Background Critical Infrastructure Sectors: Chemical, Communications, Critical Manufacturing, Energy, Financial…

Číst originál na CISA Advisories →

CZ · EN/orig

lwIP telekomunikace výroba a průmysl energetika finance US

tg: zranitelnost tp: průmyslové systémy

CVE v události 1

CVEhodnoceníKEVEPSS
CVE-2026-87121 9.8 3.1 · icscert 9.3 4.0 · icscert 0.01

Hodnocení z katalogů, všechna, se stupnicí CVSS a vydavatelem. Rozpad vektoru je na stránce CVE. Advisory v textu uvádí CVSS 9.8.