Out-of-Bounds Write Vulnerability in IGSS from Schneider Electric
CVE-2021-22750
7.8HIGH
Key Information:
- Vendor
Schneider Electric
- Vendor
- CVE Published:
- 11 June 2021
What is CVE-2021-22750?
An out-of-bounds write vulnerability exists in IGSS Definition (Def.exe) V15.0.0.21041 and earlier versions. This flaw arises from insufficient length checks during the import of potentially malicious CGF files, which could lead to data loss or allow an attacker to execute arbitrary code remotely.
Affected Version(s)
IGSS Definition (Def.exe) V15.0.0.21041 and prior IGSS Definition (Def.exe) V15.0.0.21041 and prior