Логотип exploitDog
bind:CVE-2022-3378
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-3378

Количество 2

Количество 2

nvd логотип

CVE-2022-3378

больше 3 лет назад

Horner Automation's Cscape version 9.90 SP 7 and prior does not properly validate user-supplied data. If a user opens a maliciously formed FNT file, then an attacker could execute arbitrary code within the current process by accessing an uninitialized pointer, leading to an out-of-bounds memory write.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-7fxv-pr9h-f54r

больше 3 лет назад

Horner Automation's Cscape version 9.90 SP 7 and prior does not properly validate user-supplied data. If a user opens a maliciously formed FNT file, then an attacker could execute arbitrary code within the current process by accessing an uninitialized pointer, leading to an out-of-bounds memory write.

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-3378

Horner Automation's Cscape version 9.90 SP 7 and prior does not properly validate user-supplied data. If a user opens a maliciously formed FNT file, then an attacker could execute arbitrary code within the current process by accessing an uninitialized pointer, leading to an out-of-bounds memory write.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-7fxv-pr9h-f54r

Horner Automation's Cscape version 9.90 SP 7 and prior does not properly validate user-supplied data. If a user opens a maliciously formed FNT file, then an attacker could execute arbitrary code within the current process by accessing an uninitialized pointer, leading to an out-of-bounds memory write.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу