Описание
In AzeoTech DAQFactory release 20.7 (Build 2555), a Use After Free vulnerability can be exploited to cause memory corruption while parsing specially crafted .ctl files. This could allow an attacker to execute code in the context of the current process.
Ссылки
- Third Party AdvisoryUS Government Resource
Уязвимые конфигурации
Конфигурация 1Версия до 21.1 (исключая)
cpe:2.3:a:azeotech:daqfactory:*:*:*:*:*:*:*:*
EPSS
Процентиль: 9%
0.00031
Низкий
7.8 High
CVSS3
Дефекты
CWE-416
Связанные уязвимости
CVSS3: 7.8
github
около 2 месяцев назад
In AzeoTech DAQFactory release 20.7 (Build 2555), a Use After Free vulnerability can be exploited to cause memory corruption while parsing specially crafted .ctl files. This could allow an attacker to execute code in the context of the current process.
EPSS
Процентиль: 9%
0.00031
Низкий
7.8 High
CVSS3
Дефекты
CWE-416