FATEK WinProladder Versions 3.30_24518 and prior are vulnerable to an out-of-bounds write while processing project files, which may allow an attacker to execute arbitrary code.
References
| Link | Resource |
|---|---|
| https://us-cert.cisa.gov/ics/advisories/icsa-21-320-01 | Third Party Advisory US Government Resource |
| https://www.zerodayinitiative.com/advisories/ZDI-22-030/ | |
| https://www.zerodayinitiative.com/advisories/ZDI-22-033/ | |
| https://www.zerodayinitiative.com/advisories/ZDI-22-028/ |
Configurations
Information
Published : 2021-12-28 19:15
Updated : 2022-01-13 15:15
NVD link : CVE-2021-43554
Mitre link : CVE-2021-43554
JSON object : View
Products Affected
fatek
- winproladder
CWE
CWE-787
Out-of-bounds Write
