KV STUDIO Out-of-bounds Read Vulnerability May Lead to Information Disclosure or Arbitrary Code Execution
CVE-2024-29219

7.8HIGH

What is CVE-2024-29219?

An out-of-bounds read vulnerability exists in Keyence's KV products, including KV STUDIO and KV REPLAY VIEWER, as well as VT5-WX15/WX12 series. This vulnerability allows an attacker to potentially disclose sensitive information or execute arbitrary code by tricking a user into opening a specially crafted file. Users are advised to update their software and exercise caution when handling files from untrusted sources.

Affected Version(s)

KV REPLAY VIEWER Ver.2.64 and earlier

KV STUDIO Ver.11.64 and earlier

VT5-WX15/WX12 Ver.6.02 and earlier

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.