CVE-2019-6555

Cscape, 9.80 SP4 and prior. An improper input validation vulnerability may be exploited by processing specially crafted POC files. This may allow an attacker to read confidential information and remotely execute arbitrary code.
References
Link Resource
http://www.securityfocus.com/bid/107087 Third Party Advisory VDB Entry
https://ics-cert.us-cert.gov/advisories/ICSA-19-050-03 US Government Resource Third Party Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:hornerautomation:cscape:*:*:*:*:*:*:*:*
cpe:2.3:a:hornerautomation:cscape:9.80:-:*:*:*:*:*:*
cpe:2.3:a:hornerautomation:cscape:9.80:sp1:*:*:*:*:*:*
cpe:2.3:a:hornerautomation:cscape:9.80:sp2:*:*:*:*:*:*
cpe:2.3:a:hornerautomation:cscape:9.80:sp3:*:*:*:*:*:*
cpe:2.3:a:hornerautomation:cscape:9.80:sp4:*:*:*:*:*:*

History

30 Nov 2022, 22:13

Type Values Removed Values Added
References (MISC) https://ics-cert.us-cert.gov/advisories/ICSA-19-050-03 - Third Party Advisory, US Government Resource (MISC) https://ics-cert.us-cert.gov/advisories/ICSA-19-050-03 - US Government Resource, Third Party Advisory

Information

Published : 2019-02-28 20:29

Updated : 2023-12-10 12:44


NVD link : CVE-2019-6555

Mitre link : CVE-2019-6555

CVE.ORG link : CVE-2019-6555


JSON object : View

Products Affected

hornerautomation

  • cscape
CWE
CWE-20

Improper Input Validation