CVE-2017-9638 Vulnerability Details

  /     /     /  

CVE-2017-9638 Metadata Quick Info

CVE Published: 17/04/2018 | CVE Updated: 17/09/2024 | CVE Year: 2017
Source: icscert | Vendor: Mitsubishi Electric Europe B.V. | Product: E-Designer
Status : PUBLISHED

CVE-2017-9638 Description

Mitsubishi E-Designer, Version 7.52 Build 344 contains six code sections which may be exploited to overwrite the stack. This can result in arbitrary code execution, compromised data integrity, denial of service, and system crash.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID: CWE-121
CWE Name: Stack based buffer overflow CWE-121
Source: Mitsubishi Electric Europe B.V.

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).