Impact
The flaw resides in the TS7Worker::PerformFunctionRead routine within src/core/s7_server.cpp of davenardella snap7. An attacker with local‑network access can send a specially crafted ReadVar request that is deserialized without adequate validation, raising CWE‑20 and CWE‑502 concerns. The CVE description does not explicitly confirm that code execution or other concrete impacts are achieved, so this remains a possible but unconfirmed outcome.
Affected Systems
All installations of davenardella snap7 up to and including version 1.4.3 are affected. The vulnerability is located in the core s7_server component, so any deployment that exposes the snap7 interface to the local network—regardless of operating system—falls within scope.
Risk and Exploitability
The CVSS base score of 5.3 indicates moderate severity. The EPSS score of <1% suggests a low exploitation probability, yet a public exploit has already been released. The vulnerability requires local network access, so any user‑facing snap7 server exposed to a network could be affected. The flaw is not listed in the CISA KEV catalog, but the existence of a functional exploit necessitates timely remediation.
OpenCVE Enrichment