PT-2017-19333 · Delta Electronics · Wplsoft

Axt

·

Publicado

2017-08-24

·

Atualizado

2019-10-09

·

CVE-2018-7507

CVSS v3.1

8.8

Alta

VetorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions WPLSoft in Delta Electronics versions 2.45.0 and prior
Description The issue is related to a heap-based buffer overflow in the dvp file parsing functionality. This occurs when a value larger than the buffer can be read from a file into the buffer, causing the buffer to be overwritten. This may allow remote code execution or cause the application to crash.
Recommendations For versions 2.45.0 and prior, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Heap Based Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-7507
ZDI-17-699
ZDI-17-702
ZDI-17-703
ZDI-17-704
ZDI-17-705

Produtos afetados

Wplsoft