First published: Tue Jan 22 2019(Updated: )
A type confusion vulnerability exists when processing project files in CX-Supervisor (Versions 3.42 and prior). An attacker could use a specially crafted project file to exploit and execute code under the privileges of the application.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Omron CX-Supervisor | <=3.42 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-19019 is a type confusion vulnerability that exists when processing project files in CX-Supervisor versions 3.42 and prior.
CVE-2018-19019 has a severity rating of 7.3 (High).
An attacker can exploit CVE-2018-19019 by using a specially crafted project file to execute code under the privileges of the CX-Supervisor application.
CX-Supervisor versions up to and including 3.42 are affected by CVE-2018-19019.
To fix CVE-2018-19019, it is recommended to update to a version of CX-Supervisor that is not affected by the vulnerability.