Vulnerabilities > CVE-2021-32931 - Unspecified vulnerability in Fatek Fvdesigner
Attack vector
LOCAL Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
An uninitialized pointer in FATEK Automation FvDesigner, Versions 1.5.88 and prior may be exploited while the application is processing project files, allowing an attacker to craft a special project file that may permit arbitrary code execution.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 5 |
References
- https://us-cert.cisa.gov/ics/advisories/icsa-21-217-02
- https://us-cert.cisa.gov/ics/advisories/icsa-21-217-02
- https://www.zerodayinitiative.com/advisories/ZDI-21-1027/
- https://www.zerodayinitiative.com/advisories/ZDI-21-1027/
- https://www.zerodayinitiative.com/advisories/ZDI-21-1030/
- https://www.zerodayinitiative.com/advisories/ZDI-21-1030/