cve/2023/CVE-2023-22421.md

18 lines
919 B
Markdown
Raw Permalink Normal View History

2024-05-25 21:48:12 +02:00
### [CVE-2023-22421](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-22421)
![](https://img.shields.io/static/v1?label=Product&message=Kostac%20PLC%20Programming%20Software%20(Former%20name%3A%20Koyo%20PLC%20Programming%20Software)&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=Out-of-bounds%20read&color=brighgreen)
### Description
Out-of-bounds read vulnerability exists in Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) Version 1.6.9.0 and earlier. The insufficient buffer size for the PLC program instructions leads to out-of-bounds read. As a result, opening a specially crafted project file may lead to information disclosure and/or arbitrary code execution.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/karimhabush/cyberowl