CVE-2020-27284: High severity delta electronics tpeditor vulnerability
TPEditor (v1.98 and prior) is vulnerable to two out-of-bounds write instances in the way it processes project files, allowing an attacker to craft a special project file that may permit arbitrary code execution.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-27284?
CVE-2020-27284 is a vulnerability found in TPEditor (v1.98 and prior), which allows an attacker to execute arbitrary code by crafting a special project file.
How does CVE-2020-27284 affect TPEditor?
CVE-2020-27284 affects TPEditor (v1.98 and prior) and allows an attacker to exploit two out-of-bounds write instances in the way it processes project files.
What is the severity of CVE-2020-27284?
CVE-2020-27284 has a severity rating of 7.8, which is considered high.
How can an attacker exploit CVE-2020-27284?
An attacker can exploit CVE-2020-27284 by crafting a special project file that triggers the out-of-bounds write instances in TPEditor, allowing for arbitrary code execution.
Is there a fix available for CVE-2020-27284?
At the moment, there is no specific fix available for CVE-2020-27284. It is recommended to update to a version of TPEditor that is not vulnerable.