Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v5mq-7f48-6rhv

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Parsing a maliciously crafted project file may cause a heap-based buffer overflow, which may allow an attacker to perform arbitrary code execution. User interaction is required on the WebAccess HMI Designer (versions 2.1.9.95 and prior).

Parsing a maliciously crafted project file may cause a heap-based buffer overflow, which may allow an attacker to perform arbitrary code execution. User interaction is required on the WebAccess HMI Designer (versions 2.1.9.95 and prior).

EPSS

Процентиль: 64%
0.00479
Низкий

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 7.8
nvd
больше 4 лет назад

Parsing a maliciously crafted project file may cause a heap-based buffer overflow, which may allow an attacker to perform arbitrary code execution. User interaction is required on the WebAccess HMI Designer (versions 2.1.9.95 and prior).

EPSS

Процентиль: 64%
0.00479
Низкий

Дефекты

CWE-787