Remote Code Execution Vulnerability in Fuji Electric Monitouch V-SFT
CVE-2024-11794
7.8HIGH
What is CVE-2024-11794?
The vulnerability within Fuji Electric Monitouch V-SFT V10 arises from improper handling of V10 file parsing. This flaw allows remote attackers to execute arbitrary code by coercing a user to interact with specially crafted files or malicious web content. The absence of adequate validation of user-supplied data permits an out-of-bounds write operation, leading to overwriting adjacent memory regions. Successful exploitation of this vulnerability enables an attacker to execute code within the context of the targeted process, posing significant risks to the integrity and security of affected systems.
Affected Version(s)
Monitouch V-SFT 6.2.3.0