File Parser Vulnerability in ABB CP400 Panel Builder TextEditor Product
CVE-2018-19008
7.8HIGH
What is CVE-2018-19008?
The TextEditor in ABB CP400 Panel Builder versions 2.0.7.05 and earlier has a significant vulnerability in its file parser. This flaw fails to adequately restrict the insertion of specially crafted files, potentially leading to arbitrary code execution within the application. As a result, malicious actors could exploit this weakness to execute unauthorized commands, posing a serious risk to system integrity and security.
Affected Version(s)
ABB CP400 Panel Builder TextEditor 2.0 Versions 2.0.7.05 and earlier
