CVE-2017-9634 Vulnerability Details

  /     /     /  

CVE-2017-9634 Metadata Quick Info

CVE Published: 17/04/2018 | CVE Updated: 17/09/2024 | CVE Year: 2017
Source: icscert | Vendor: Mitsubishi Electric Europe B.V. | Product: E-Designer
Status : PUBLISHED

CVE-2017-9634 Description

Mitsubishi E-Designer, Version 7.52 Build 344 contains two code sections which may be exploited to allow an attacker to overwrite arbitrary memory locations. This can result in arbitrary code execution, compromised data integrity, denial of service, and system crash.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID: CWE-787
CWE Name: Out-of-bounds write CWE-787
Source: Mitsubishi Electric Europe B.V.

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).