CVE-2025-3845
CVSS 3.1 Score 7.3 of 10 (high)
Details
Published Apr 21, 2025
Updated: Apr 23, 2025
CWE ID 119
CWE ID 120
Summary
CVE-2025-3845 is a critical buffer overflow vulnerability affecting the Markparticle WebServer up to version 1.0. The issue lies within the Buffer::HasWritten function in the file code/buffer/buffer.cpp. An attacker can manipulate the argument writePos_ to overwrite adjacent memory, leading to a buffer overflow. This vulnerability can be exploited remotely, meaning an attacker does not require access to the system to launch an attack. The exploit for this vulnerability has been disclosed to the public, increasing the risk of widespread exploitation.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.