CVE-2021-22754: High severity interactive graphical scada system vulnerability
A CWE-787: Out-of-bounds write vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could result in loss of data or remote code execution due to lack of proper validation of user-supplied data, when a malicious CGF file is imported to IGSS Definition.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this out-of-bounds write vulnerability?
The vulnerability ID for this out-of-bounds write vulnerability is CVE-2021-22754.
What is the severity rating of CVE-2021-22754?
The severity rating of CVE-2021-22754 is 7.8 (High).
Which software versions are affected by CVE-2021-22754?
The affected software version for CVE-2021-22754 is IGSS Definition (Def.exe) V15.0.0.21140 and prior.
How can this vulnerability be exploited?
This vulnerability can be exploited by importing a malicious CGF file to IGSS Definition.
Is there a fix available for CVE-2021-22754?
Currently, no specific fix information is available. It is recommended to follow the vendor's advisory and apply any updates or patches as they become available.