PT-2022-4544 · Horner Automation · Cscape Envision Rv

Michael Heinzl

·

Published

2022-03-25

·

Updated

2022-04-04

·

CVE-2021-44462

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Horner Automation Cscape EnvisionRV versions 4.50.3.1 and prior
Description This issue can be exploited by parsing maliciously crafted project files, resulting from the lack of proper validation of user-supplied data. This can lead to reads and writes past the end of allocated data structures. User interaction is required to exploit this issue, as an attacker must trick a valid user into opening a malicious HMI project file. The exploitation can impact the confidentiality, integrity, and availability of protected information.
Recommendations For versions 4.50.3.1 and prior, consider avoiding the use of user-supplied data in project files until a patch is available. As a temporary workaround, restrict access to opening HMI project files from untrusted sources to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this issue.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2022-05415
CVE-2021-44462

Affected Products

Cscape Envision Rv