PT-2017-19333 · Delta Electronics · Wplsoft
Axt
·
Publicado
2017-08-24
·
Atualizado
2019-10-09
·
CVE-2018-7507
CVSS v3.1
8.8
Alta
| Vetor | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
WPLSoft in Delta Electronics versions 2.45.0 and prior
Description
The issue is related to a heap-based buffer overflow in the dvp file parsing functionality. This occurs when a value larger than the buffer can be read from a file into the buffer, causing the buffer to be overwritten. This may allow remote code execution or cause the application to crash.
Recommendations
For versions 2.45.0 and prior, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Buffer Overflow
Heap Based Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Wplsoft