Impact
The vulnerability is an improper check for unusual or exceptional conditions in Samsung Escargot. It allows an attacker to manipulate input data, potentially leading to incorrect execution or tampering of data. This flaw is classified as CWE-754, indicating improper handling of exceptional states.
Affected Systems
Samsung Open Source Escargot is affected, specifically the repository revision 590345cc6258317c5da850d846ce6baaf2afc2d3. No broader version range is provided.
Risk and Exploitability
With a CVSS score of 5.5, the severity is moderate. The EPSS score is unavailable, making the exploitation probability unclear, but the vulnerability is not currently listed in CISA's KEV catalog. The likely attack vector is the delivery of crafted input to Escargot, which could occur via a web application or script that processes untrusted data.
OpenCVE Enrichment