of service and loss of confidentiality & integrity when application user opens a malicious Zelio
Soft 2 project file.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-49165 | CWE-416: Use After Free vulnerability exists that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when application user opens a malicious Zelio Soft 2 project file. |
Tue, 08 Oct 2024 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Schneider-electric
Schneider-electric zelio Soft 2 |
|
| CPEs | cpe:2.3:a:schneider-electric:zelio_soft_2:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Schneider-electric
Schneider-electric zelio Soft 2 |
|
| Metrics |
ssvc
|
Tue, 08 Oct 2024 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | CWE-416: Use After Free vulnerability exists that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when application user opens a malicious Zelio Soft 2 project file. | |
| Weaknesses | CWE-416 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: schneider
Published:
Updated: 2024-10-08T13:51:54.776Z
Reserved: 2024-09-04T14:02:49.645Z
Link: CVE-2024-8422
Updated: 2024-10-08T12:44:24.400Z
Status : Analyzed
Published: 2024-10-08T10:15:04.880
Modified: 2024-10-16T18:00:10.507
Link: CVE-2024-8422
No data.
OpenCVE Enrichment
No data.
EUVD