CVE-2018-19018: High severity omron cx-supervisor vulnerability
Published Feb 12, 2019
·Updated
An access of uninitialized pointer vulnerability in CX-Supervisor (Versions 3.42 and prior) could lead to type confusion when processing project files. An attacker could use a specially crafted project file to exploit and execute code under the privileges of the application.
Affected Software
1 affected component
Omron CX-Supervisor<=3.42
Event History
Feb 12, 2019
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2018-19018.
2
What software is affected by this vulnerability?
The vulnerability affects CX-Supervisor (Versions 3.42 and prior).
3
What is the severity of CVE-2018-19018?
The severity of CVE-2018-19018 is high (7.3).
4
What is the CWE ID for this vulnerability?
The CWE ID for this vulnerability is CWE-824.
5
How can an attacker exploit this vulnerability?
An attacker can exploit this vulnerability by using a specially crafted project file to execute code under the privileges of the application.