Описание
Panasonic FPWIN Pro version 7.3.0.0 and prior allows attacker-created project files to be loaded by an authenticated user triggering incompatible type errors because the resource does not have expected properties. This may lead to remote code execution.
Panasonic FPWIN Pro version 7.3.0.0 and prior allows attacker-created project files to be loaded by an authenticated user triggering incompatible type errors because the resource does not have expected properties. This may lead to remote code execution.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2019-6532
- https://ics-cert.us-cert.gov/advisories/ICSA-19-157-02
- https://www.zerodayinitiative.com/advisories/ZDI-19-566
- https://www.zerodayinitiative.com/advisories/ZDI-19-568
- https://www.zerodayinitiative.com/advisories/ZDI-19-570
- http://www.securityfocus.com/bid/108683
EPSS
CVE ID
Связанные уязвимости
Panasonic FPWIN Pro version 7.3.0.0 and prior allows attacker-created project files to be loaded by an authenticated user triggering incompatible type errors because the resource does not have expected properties. This may lead to remote code execution.
EPSS