CVE-2022-3379
27.10.2022, 23:15
Horner Automation's Cscape version 9.90 SP7 and prior does not properly validate user-supplied data. If a user opens a maliciously formed FNT file, then an attacker could execute arbitrary code within the current process by writing outside the memory buffer.Enginsight
Vendor | Product | Version |
---|---|---|
hornerautomation | cscape | 𝑥 < 9.90 |
hornerautomation | cscape | 9.90 |
hornerautomation | cscape | 9.90:sp1 |
hornerautomation | cscape | 9.90:sp2 |
hornerautomation | cscape | 9.90:sp3 |
hornerautomation | cscape | 9.90:sp4 |
hornerautomation | cscape | 9.90:sp5 |
hornerautomation | cscape | 9.90:sp6 |
hornerautomation | cscape | 9.90:sp7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration