← Zuruck zu CVEs
CVE-2019-13522
HIGH7.8
Beschreibung
An attacker could use a specially crafted project file to corrupt the memory and execute code under the privileges of the EZ PLC Editor Versions 1.8.41 and prior.
CVE Details
CVSS v3.1 Bewertung7.8
SchweregradHIGH
CVSS VektorCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
AngriffsvektorLOCAL
KomplexitatLOW
Erforderliche PrivilegienNONE
BenutzerinteraktionREQUIRED
Veroffentlicht9/4/2019
Zuletzt geandert11/21/2024
Quellenvd
Honeypot-Sichtungen0
Betroffene Produkte
ezautomation:ez_plc_editor
Schwachen (CWE)
CWE-119CWE-787
Referenzen
https://www.us-cert.gov/ics/advisories/icsa-19-246-02(ics-cert@hq.dhs.gov)
https://www.us-cert.gov/ics/advisories/icsa-19-246-02(af854a3a-2127-422b-91ae-364da2661108)
IOC Korrelationen
Keine Korrelationen erfasst
This product uses data from the NVD API but is not endorsed or certified by the NVD.