In Advantech WebAccess HMI Designer Version 2.1.9.23 and prior, processing specially crafted MCR files lacking proper validation of user supplied data may cause the system to write outside the intended buffer area, allowing remote code execution.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2019-08-02T16:06:09
Updated: 2024-08-04T22:40:15.551Z
Reserved: 2019-04-08T00:00:00
Link: CVE-2019-10961
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-08-02T17:15:14.327
Modified: 2024-11-21T04:20:15.013
Link: CVE-2019-10961
Redhat
No data.