CVE-2018-19019: Incorrect Type Cast
A type confusion vulnerability exists when processing project files in CX-Supervisor (Versions 3.42 and prior). An attacker could use a specially crafted project file to exploit and execute code under the privileges of the application.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-19019?
CVE-2018-19019 is a type confusion vulnerability that exists when processing project files in CX-Supervisor versions 3.42 and prior.
What is the severity of CVE-2018-19019?
CVE-2018-19019 has a severity rating of 7.3 (High).
How can an attacker exploit CVE-2018-19019?
An attacker can exploit CVE-2018-19019 by using a specially crafted project file to execute code under the privileges of the CX-Supervisor application.
What software is affected by CVE-2018-19019?
CX-Supervisor versions up to and including 3.42 are affected by CVE-2018-19019.
How can I fix CVE-2018-19019?
To fix CVE-2018-19019, it is recommended to update to a version of CX-Supervisor that is not affected by the vulnerability.