ZeroHour

CVE-2018-19005

CVSS 3.0
7.8 high
EPSS
2%p75
Published
()
Modified
Description

Cscape, Version 9.80.75.3 SP3 and prior. An improper input validation vulnerability has been identified that may be exploited by processing specially crafted POC files lacking user input validation. This may allow an attacker to read confidential information and remotely execute arbitrary code.

Vendors
hornerautomation
Products
cscape
Weakness
CWE-20
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.