Security Advisory

CVE-2021-37165

9.8
CRITICAL

Vulnerability Description

A buffer overflow issue was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus Panel operated by released versions of software before Nexus Software 7.2.5.7. When a message is sent to the HMI TCP socket, it is forwarded to the hmiProcessMsg function through the pendingQ, and may lead to remote code execution.
Published Date August 2, 2021
Official Source NIST NVD Advisory