CyberRota Analysis
AI-GeneratedA heap-based buffer overflow vulnerability exists in the saappctl.sys library of SecureAge CatchPulse versions up to 10.9.3, which can be exploited locally. Successful exploitation may allow an attacker to manipulate memory, potentially leading to arbitrary code execution. Organizations using affected versions should prioritize upgrading to version 10.10.0 to mitigate this high-severity risk.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A security vulnerability has been detected in SecureAge CatchPulse up to 10.9.3. The affected element is an unknown function in the library saappctl.sys of the component Driver. Such manipulation leads to heap-based buffer overflow. An attack has to be approached locally. The exploit has been disclosed publicly and may be used. Upgrading to version 10.10.0 is sufficient to fix this issue. You should upgrade the affected component. The vendor was contacted early about this disclosure.