CVE-2017-9636 Vulnerability Details

  /     /     /  

CVE-2017-9636 Metadata Quick Info

CVE Published: 17/04/2018 | CVE Updated: 16/09/2024 | CVE Year: 2017
Source: icscert | Vendor: Mitsubishi Electric Europe B.V. | Product: E-Designer
Status : PUBLISHED

CVE-2017-9636 Description

Mitsubishi E-Designer, Version 7.52 Build 344 contains five code sections which may be exploited to overwrite the heap. This can result in arbitrary code execution, compromised data integrity, denial of service, and system crash.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID: CWE-122
CWE Name: Heap based buffer overflow CWE-122
Source: Mitsubishi Electric Europe B.V.

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).