Vulnerabilities > CVE-2022-2892 - Out-of-bounds Write vulnerability in Measuresoft Scadapro Server 6.7

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
measuresoft
CWE-787

Summary

Measuresoft ScadaPro Server (Versions prior to 6.8.0.1) uses an unmaintained ActiveX control, which may allow an out-of-bounds write condition while processing a specific project file.

Vulnerable Configurations

Part Description Count
Application
Measuresoft
2

Common Weakness Enumeration (CWE)