CVE-2023-22317: Use After Free
Published Aug 3, 2023
·Updated
Use after free vulnerability exists in CX-Programmer Ver.9.79 and earlier. By having a user open a specially crafted CXP file, information disclosure and/or arbitrary code execution may occur. This vulnerability is different from CVE-2023-22277 and CVE-2023-22314.
Affected Software
1 affected component
Omron CX-Programmer<=9.79
Event History
Aug 3, 2023
CVE Published
via MITRE·12:56 PM
Data Sourced
via MITRE·12:56 PM
DescriptionWeakness
Data Sourced
01:15 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-22317.
2
What is the severity of CVE-2023-22317?
The severity of CVE-2023-22317 is high, with a CVSS score of 7.8.
3
Which software versions are affected by CVE-2023-22317?
CX-Programmer Ver.9.79 and earlier versions are affected by CVE-2023-22317.
4
How can an attacker exploit CVE-2023-22317?
An attacker can exploit CVE-2023-22317 by having a user open a specially crafted CXP file, which may lead to information disclosure and/or arbitrary code execution.
5
Is CVE-2023-22317 related to other vulnerabilities?
CVE-2023-22317 is different from CVE-2023-22277 and CVE-2023-22314.