PT-2021-20010 · Fatek Automation · Winproladder

Michael Heinzl

·

Published

2021-06-29

·

Updated

2021-07-02

·

CVE-2021-32992

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions FATEK Automation WinProladder versions 3.30 and prior
Description The issue is related to improper restriction of operations within the bounds of a memory buffer, which may allow an attacker to execute arbitrary code.
Recommendations For FATEK Automation WinProladder versions 3.30 and prior, update to a version later than 3.30 to resolve the issue. At the moment, there is no information about additional mitigation measures.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-32992

Affected Products

Winproladder