Логотип exploitDog
bind:CVE-2022-3377
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-3377

Количество 2

Количество 2

nvd логотип

CVE-2022-3377

около 3 лет назад

Horner Automation's Cscape version 9.90 SP 6 and prior does not properly validate user-supplied data. If a user opens a maliciously formed FNT file, then an attacker could execute arbitrary code within the current process by accessing an uninitialized pointer, leading to an out-of-bounds memory read.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-jgp5-g9cp-mgfw

около 3 лет назад

Horner Automation's Cscape version 9.90 SP 6 and prior does not properly validate user-supplied data. If a user opens a maliciously formed FNT file, then an attacker could execute arbitrary code within the current process by accessing an uninitialized pointer, leading to an out-of-bounds memory read.

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-3377

Horner Automation's Cscape version 9.90 SP 6 and prior does not properly validate user-supplied data. If a user opens a maliciously formed FNT file, then an attacker could execute arbitrary code within the current process by accessing an uninitialized pointer, leading to an out-of-bounds memory read.

CVSS3: 7.8
0%
Низкий
около 3 лет назад
github логотип
GHSA-jgp5-g9cp-mgfw

Horner Automation's Cscape version 9.90 SP 6 and prior does not properly validate user-supplied data. If a user opens a maliciously formed FNT file, then an attacker could execute arbitrary code within the current process by accessing an uninitialized pointer, leading to an out-of-bounds memory read.

CVSS3: 7.8
0%
Низкий
около 3 лет назад

Уязвимостей на страницу