CVE-2023-31244
06.06.2023, 17:15
The affected product does not properly validate user-supplied data. If a user opens a maliciously formed CSP file, then an attacker could execute arbitrary code within the current process by accessing an uninitialized pointer.Enginsight
| Vendor | Product | Version |
|---|---|---|
| hornerautomation | cscape | 9.90:sp8 |
| hornerautomation | cscape_envisionrv | 4.70 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration