Vulnerabilities > CVE-2020-27280 - Use After Free vulnerability in Deltaww Ispsoft

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
deltaww
CWE-416

Summary

A use after free issue has been identified in the way ISPSoft(v3.12 and prior) processes project files, allowing an attacker to craft a special project file that may allow arbitrary code execution.

Vulnerable Configurations

Part Description Count
Application
Deltaww
4

Common Weakness Enumeration (CWE)