Out-of-Bounds Read in V-SFT Graphic Editor by Fuji Electric
CVE-2022-30546

7.8HIGH

What is CVE-2022-30546?

An out-of-bounds read vulnerability has been identified in the simulator module of Fuji Electric's V-SFT graphic editor. This issue affects versions before v6.1.6.0 and may allow an attacker to exploit the vulnerability by convincing a user to open a specially crafted image file. Such an action could potentially lead to sensitive information disclosure or enable the execution of arbitrary code, emphasizing the need for users to apply the recommended updates to mitigate any associated risks.

Affected Version(s)

V-SFT versions prior to v6.1.6.0

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.