First published: Wed Jun 01 2022(Updated: )
The affected product is vulnerable to an out-of-bounds write, which may allow an attacker to execute arbitrary code.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Horner Automation Cscape | <9.90 | |
Horner Automation Cscape | =9.90 | |
Horner Automation Cscape | =9.90-sp1 | |
Horner Automation Cscape | =9.90-sp2 | |
Horner Automation Cscape | =9.90-sp3 | |
Horner Automation Cscape | =9.90-sp4 | |
Horner Automation Cscape | =9.90-sp5 | |
Horner Automation Cscape Csfont: Versions 9.90 SP5 (v9.90.196) and prior |
Horner Automation recommends affected users update to the latest version of Cscape Csfont Version 9.90 SP6.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-27184 is a vulnerability that allows an attacker to execute arbitrary code due to an out-of-bounds write in the affected product.
The severity of CVE-2022-27184 is high, with a CVSS score of 7.8.
The affected software versions are 9.90, 9.90-sp1, 9.90-sp2, 9.90-sp3, 9.90-sp4, and 9.90-sp5 of Horner Automation Cscape.
An attacker can exploit CVE-2022-27184 by leveraging the out-of-bounds write vulnerability to execute arbitrary code.
Horner Automation Cscape version 9.90 and later have addressed the vulnerability and provide the necessary fix.