CVE-2023-38747: Buffer Overflow
Heap-based buffer overflow vulnerability exists in CX-Programmer Included in CX-One CXONE-AL[][]D-V4 V9.80 and earlier. By having a user open a specially crafted CXP file, information disclosure and/or arbitrary code execution may occur.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-38747?
CVE-2023-38747 is a heap-based buffer overflow vulnerability that exists in CX-Programmer included in CX-One CXONE-AL[][]D-V4 V9.80 and earlier.
How severe is CVE-2023-38747?
CVE-2023-38747 has a severity rating of 7.8 (High).
How can CVE-2023-38747 be exploited?
CVE-2023-38747 can be exploited by having a user open a specially crafted CXP file, which may lead to information disclosure and/or arbitrary code execution.
What is the affected software for CVE-2023-38747?
The affected software for CVE-2023-38747 is CX-Programmer included in CX-One CXONE-AL[][]D-V4 V9.80 and earlier versions.
How can I mitigate CVE-2023-38747?
To mitigate CVE-2023-38747, it is recommended to update to a version of CX-One CXONE-AL[][]D-V4 V9.81 or later.