描述
An uninitialized pointer in FATEK Automation FvDesigner, Versions 1.5.88 and prior may be exploited while the application is processing project files, allowing an attacker to craft a special project file that may permit arbitrary code execution.
AI分析AI驱动
受影响产品
fatekfvdesigner
参考资料
- https://us-cert.cisa.gov/ics/advisories/icsa-21-217-02Third Party AdvisoryUS Government Resource
- https://www.zerodayinitiative.com/advisories/ZDI-21-1027/Third Party AdvisoryVDB Entry
- https://www.zerodayinitiative.com/advisories/ZDI-21-1030/Third Party AdvisoryVDB Entry
- https://us-cert.cisa.gov/ics/advisories/icsa-21-217-02Third Party AdvisoryUS Government Resource
- https://www.zerodayinitiative.com/advisories/ZDI-21-1027/Third Party AdvisoryVDB Entry
- https://www.zerodayinitiative.com/advisories/ZDI-21-1030/Third Party AdvisoryVDB Entry