Description
Use after free vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an attacker to cause information disclosure and/or arbitrary code execution by having a user to open a specially crafted CXP file. This vulnerability is different from CVE-2022-25230.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-30007 | Use after free vulnerability in CX-Programmer v9.76.1 and earlier which is a part of CX-One (v4.60) suite allows an attacker to cause information disclosure and/or arbitrary code execution by having a user to open a specially crafted CXP file. This vulnerability is different from CVE-2022-25230. |
References
| Link | Providers |
|---|---|
| https://jvn.jp/en/vu/JVNVU90121984/index.html |
|
History
No history.
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-08-03T04:36:06.770Z
Reserved: 2022-02-22T00:00:00.000Z
Link: CVE-2022-25325
No data.
Status : Modified
Published: 2022-03-10T17:47:07.817
Modified: 2024-11-21T06:52:00.327
Link: CVE-2022-25325
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD