216.73.217.50

CVE-2024-8422

· Published 08/10/2024 10:15 · Modified 16/10/2024 18:00

Labels: CVE-2024-8422 2024-10-08CVE-2024-8422CWE-416[email protected]

Essential information

Published
08/10/2024 10:15
Modified
16/10/2024 18:00
Author
Creator
CVSS
7.8 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

CVSS metrics

Description

CWE-416: Use After Free vulnerability exists that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when application user opens a malicious Zelio Soft 2 project file.

NVD status

Status
Analyzed — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
schneider-electric / zelio soft 2 cpe:2.3:a:schneider-electric:zelio_soft_2:*:*:*:*:*:*:*:*

References