Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8c78-qwfr-hr2w

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

An exploitable memory corruption vulnerability exists in Investintech Able2Extract Professional 4.0.7 x64. A specially crafted JPEG file can cause an out-of-bounds memory write, allowing an attacker to execute arbitrary code on the victim machine. An attacker could exploit a vulnerability by providing the user with a specially crafted JPEG file.

An exploitable memory corruption vulnerability exists in Investintech Able2Extract Professional 4.0.7 x64. A specially crafted JPEG file can cause an out-of-bounds memory write, allowing an attacker to execute arbitrary code on the victim machine. An attacker could exploit a vulnerability by providing the user with a specially crafted JPEG file.

EPSS

Процентиль: 56%
0.00335
Низкий

7.8 High

CVSS3

Дефекты

CWE-190
CWE-787

Связанные уязвимости

CVSS3: 7.8
nvd
больше 6 лет назад

An exploitable memory corruption vulnerability exists in Investintech Able2Extract Professional 4.0.7 x64. A specially crafted JPEG file can cause an out-of-bounds memory write, allowing an attacker to execute arbitrary code on the victim machine. An attacker could exploit a vulnerability by providing the user with a specially crafted JPEG file.

EPSS

Процентиль: 56%
0.00335
Низкий

7.8 High

CVSS3

Дефекты

CWE-190
CWE-787