could allow an attacker to disclose information and execute arbitrary
code.
Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Horner Automation recommends users update to Cscape v10 SP1 https://hornerautomation.com/cscape-software-free/cscape-software/ or later.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-50368 | Horner Automation Cscape contains a memory corruption vulnerability, which could allow an attacker to disclose information and execute arbitrary code. |
Fri, 13 Dec 2024 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 13 Dec 2024 01:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Horner Automation Cscape contains a memory corruption vulnerability, which could allow an attacker to disclose information and execute arbitrary code. | |
| Title | Horner Automation Cscape Out-of-bounds Read | |
| Weaknesses | CWE-125 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-12-13T21:14:18.861Z
Reserved: 2024-10-03T23:27:07.486Z
Link: CVE-2024-9508
Updated: 2024-12-13T21:14:13.749Z
Status : Deferred
Published: 2024-12-13T01:15:11.810
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-9508
No data.
OpenCVE Enrichment
No data.
EUVD