Lucene search

K
cvelistIcscertCVELIST:CVE-2022-1403
HistoryApr 29, 2022 - 4:11 p.m.

CVE-2022-1403 Delta Electronics ASDA-Soft Out-of-bounds Write

2022-04-2916:11:09
CWE-787
icscert
www.cve.org
1
delta electronics
asda-soft
out-of-bounds write
vulnerability
version 5.4.1.0

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

30.1%

ASDA-Soft: Version 5.4.1.0 and prior does not properly sanitize input while processing a specific project file, allowing a possible out-of-bounds write condition.

CNA Affected

[
  {
    "product": "ASDA-Soft",
    "vendor": "Delta Electronics",
    "versions": [
      {
        "lessThanOrEqual": "5.4.1.0",
        "status": "affected",
        "version": "All",
        "versionType": "custom"
      }
    ]
  }
]

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

30.1%

Related for CVELIST:CVE-2022-1403