PT-2022-4544 · Horner Automation · Cscape Envision Rv
Michael Heinzl
·
Published
2022-03-25
·
Updated
2022-04-04
·
CVE-2021-44462
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Horner Automation Cscape EnvisionRV versions 4.50.3.1 and prior
Description
This issue can be exploited by parsing maliciously crafted project files, resulting from the lack of proper validation of user-supplied data. This can lead to reads and writes past the end of allocated data structures. User interaction is required to exploit this issue, as an attacker must trick a valid user into opening a malicious HMI project file. The exploitation can impact the confidentiality, integrity, and availability of protected information.
Recommendations
For versions 4.50.3.1 and prior, consider avoiding the use of user-supplied data in project files until a patch is available. As a temporary workaround, restrict access to opening HMI project files from untrusted sources to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this issue.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cscape Envision Rv