Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-47135

Опубликовано: 03 окт. 2024
Источник: nvd
CVSS3: 7.8
EPSS Низкий

Описание

Stack-based buffer overflow vulnerability exists in Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) Version 1.6.14.0 and earlier. Having a user open a specially crafted project file which was saved using Kostac PLC Programming Software Version 1.6.9.0 and earlier may cause a denial-of-service (DoS) condition, arbitrary code execution, and/or information disclosure because the issues exist in parsing of KPP project files.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:jtekt:kostac_plc:*:*:*:*:*:*:*:*
Версия до 1.6.15.0 (исключая)

EPSS

Процентиль: 37%
0.00156
Низкий

7.8 High

CVSS3

Дефекты

CWE-121
CWE-787

Связанные уязвимости

CVSS3: 7.8
github
больше 1 года назад

Stack-based buffer overflow vulnerability exists in Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) Version 1.6.14.0 and earlier. Having a user open a specially crafted project file which was saved using Kostac PLC Programming Software Version 1.6.9.0 and earlier may cause a denial-of-service (DoS) condition, arbitrary code execution, and/or information disclosure because the issues exist in parsing of KPP project files.

EPSS

Процентиль: 37%
0.00156
Низкий

7.8 High

CVSS3

Дефекты

CWE-121
CWE-787