Use After Free Vulnerability in CX-Supervisor by Mitsubishi Electric
CVE-2018-19017
8.8HIGH
What is CVE-2018-19017?
Several vulnerabilities classified as use after free have been detected in CX-Supervisor (versions 3.42 and earlier). The software fails to verify if it is referencing previously freed memory when processing project files. An attacker can exploit this vulnerability by crafting a malicious project file, potentially allowing for the execution of arbitrary code with the application's privileges.
Affected Version(s)
CX-Supervisor Versions 3.42 and prior
