CVE-2023-28729: High severity panasonic control fpwin pro vulnerability
Published Jul 21, 2023
·Updated
A type confusion vulnerability in Panasonic Control FPWIN Pro versions 7.6.0.3 and all previous versions may allow arbitrary code execution when opening specially crafted project files.
Affected Software
1 affected component
Panasonic Control FPWIN Pro<=7.6.0.3
Event History
Jul 21, 2023
CVE Published
via MITRE·06:05 AM
Data Sourced
via MITRE·06:05 AM
DescriptionSeverityWeakness
Data Sourced
07:15 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this type confusion vulnerability?
The vulnerability ID is CVE-2023-28729.
2
What is the severity rating of CVE-2023-28729?
CVE-2023-28729 has a severity rating of 7.8 (high).
3
Which software versions are affected by CVE-2023-28729?
CVE-2023-28729 affects Panasonic Control FPWIN Pro versions 7.6.0.3 and all previous versions.
4
How can arbitrary code execution be triggered in CVE-2023-28729?
Arbitrary code execution can be triggered by opening specially crafted project files in Panasonic Control FPWIN Pro versions 7.6.0.3 and all previous versions.
5
Where can I find more information about CVE-2023-28729?
More information about CVE-2023-28729 can be found at the following link: https://industry.panasonic.eu/factory-automation/programmable-logic-controllers-plc/plc-software/programming-software-control-fpwin-pro