CVE-2018-19005

Cscape, Version 9.80.75.3 SP3 and prior. An improper input validation vulnerability has been identified that may be exploited by processing specially crafted POC files lacking user input validation. This may allow an attacker to read confidential information and remotely execute arbitrary code.
References
Link Resource
https://ics-cert.us-cert.gov/advisories/ICSA-18-354-01 Third Party Advisory US Government Resource
http://www.securityfocus.com/bid/106275 Third Party Advisory VDB Entry
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:hornerautomation:cscape:9.80.75.3:sp2:*:*:*:*:*:*
cpe:2.3:a:hornerautomation:cscape:*:*:*:*:*:*:*:*
cpe:2.3:a:hornerautomation:cscape:9.80.75.3:-:*:*:*:*:*:*
cpe:2.3:a:hornerautomation:cscape:9.80.75.3:sp1:*:*:*:*:*:*
cpe:2.3:a:hornerautomation:cscape:9.80.75.3:sp3:*:*:*:*:*:*

Information

Published : 2018-12-20 13:29

Updated : 2019-10-09 16:37


NVD link : CVE-2018-19005

Mitre link : CVE-2018-19005


JSON object : View

CWE
CWE-20

Improper Input Validation

Advertisement

dedicated server usa

Products Affected

hornerautomation

  • cscape