Description
Use after free vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an attacker to cause information disclosure and/or arbitrary code execution by having a user to open a specially crafted CXP file. This vulnerability is different from CVE-2022-25325.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-29929 | Use after free vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an attacker to cause information disclosure and/or arbitrary code execution by having a user to open a specially crafted CXP file. This vulnerability is different from CVE-2022-25325. |
References
| Link | Providers |
|---|---|
| https://jvn.jp/en/vu/JVNVU90121984/index.html |
|
History
No history.
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-08-03T04:36:06.681Z
Reserved: 2022-02-22T00:00:00.000Z
Link: CVE-2022-25230
No data.
Status : Modified
Published: 2022-03-10T17:47:03.177
Modified: 2024-11-21T06:51:50.803
Link: CVE-2022-25230
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD