216.73.217.22

CVE-2025-47749

· Published 19/05/2025 08:15 · Modified 19/05/2025 17:30

Labels: CVE-2025-47749 2025-05-19CVE-2025-47749CWE-761CWE-763[email protected]

Essential information

Published
19/05/2025 08:15
Modified
19/05/2025 17:30
Author
Creator
CVSS
8.4 HIGH (v3) 8.4 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

V-SFT v6.2.5.0 and earlier contains an issue with free of pointer not at start of buffer in VS6EditData.dll!CWinFontInf::WinFontMsgCheck function. Opening specially crafted V7 or V8 files may lead to crash, information disclosure, and arbitrary code execution.

NVD status

Status
Analyzed — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
fujielectric / monitouch v-sft cpe:2.3:a:fujielectric:monitouch_v-sft:*:*:*:*:*:*:*:*

References