Double Free Vulnerability in Omron CX-Supervisor Software
CVE-2018-7523

5.3MEDIUM

Key Information:

Vendor

Ics-cert

Vendor
CVE Published:
21 March 2018

What is CVE-2018-7523?

A vulnerability exists in Omron CX-Supervisor software that allows for the parsing of malformed project files, which can trigger a double free condition. This flaw may lead to potential exploitation, resulting in unexpected behavior of the software, including crashes or the execution of arbitrary code. Users and administrators should take immediate action to upgrade to the latest versions to mitigate risks associated with malformed project files.

Affected Version(s)

Omron CX-Supervisor Version 3.30 and prior

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.