Out-of-Bounds Read Vulnerability in Kostac PLC Programming Software by JTEKT
CVE-2023-22419
7.8HIGH
Key Information:
- Vendor
- CVE Published:
- 6 March 2023
What is CVE-2023-22419?
An out-of-bounds read vulnerability exists in Kostac PLC Programming Software, formerly known as Koyo PLC Programming Software. This issue arises during the processing of a comment block in stage information, where the software fails to verify the end of data correctly. Exploiting this vulnerability, an attacker can craft a project file that, when opened, may lead to unauthorized information disclosure or the execution of arbitrary code on the affected system.
Affected Version(s)
Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) Version 1.6.9.0 and earlier