In Advantech WebAccess HMI Designer Version 2.1.9.23 and prior, processing specially crafted MCR files lacking proper validation of user supplied data may cause the system to write outside the intended buffer area, allowing remote code execution.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-2675 | In Advantech WebAccess HMI Designer Version 2.1.9.23 and prior, processing specially crafted MCR files lacking proper validation of user supplied data may cause the system to write outside the intended buffer area, allowing remote code execution. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-08-04T22:40:15.551Z
Reserved: 2019-04-08T00:00:00
Link: CVE-2019-10961
No data.
Status : Modified
Published: 2019-08-02T17:15:14.327
Modified: 2024-11-21T04:20:15.013
Link: CVE-2019-10961
No data.
OpenCVE Enrichment
No data.
EUVD