Heap-Based Buffer Overflow in Fuji Electric Monitouch V-SFT-6
CVE-2025-54496
8.4HIGH
What is CVE-2025-54496?
A vulnerability exists in Fuji Electric Monitouch V-SFT-6 that allows for a heap-based buffer overflow due to a maliciously crafted project file. This could potentially enable an attacker to execute arbitrary code, posing a significant risk to system integrity and security.
Affected Version(s)
Monitouch V-SFT-6 6.2.7.0
Monitouch V-SFT-6 6.2.8.0
Monitouch V-SFT-6 6.2.9.0 or newer.
References
CVSS V4
Score:
8.4
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Rocco Calvi with TecSecurity working with Trend Micro Zero Day Initiative reported these vulnerabilities to CISA.
