Vulnerabilities > Fatek > High

DATE CVE VULNERABILITY TITLE RISK
2021-10-18 CVE-2021-38438 Unspecified vulnerability in Fatek Winproladder 3.28/3.30
A use after free vulnerability in FATEK Automation WinProladder versions 3.30 and prior may be exploited when a valid user opens a malformed project file, which may allow arbitrary code execution.
local
low complexity
fatek
7.8
2021-10-18 CVE-2021-38442 Out-of-bounds Write vulnerability in Fatek Winproladder 3.28/3.30
FATEK Automation WinProladder versions 3.30 and prior lacks proper validation of user-supplied data when parsing project files, which could result in a heap-corruption condition.
local
low complexity
fatek CWE-787
7.8
2021-08-11 CVE-2021-32931 Unspecified vulnerability in Fatek Fvdesigner
An uninitialized pointer in FATEK Automation FvDesigner, Versions 1.5.88 and prior may be exploited while the application is processing project files, allowing an attacker to craft a special project file that may permit arbitrary code execution.
local
low complexity
fatek
7.8
2021-08-11 CVE-2021-32939 Out-of-bounds Write vulnerability in Fatek Fvdesigner
FATEK Automation FvDesigner, Versions 1.5.88 and prior is vulnerable to an out-of-bounds write while processing project files, allowing an attacker to craft a project file that may permit arbitrary code execution.
local
low complexity
fatek CWE-787
7.8
2021-08-11 CVE-2021-32947 Unspecified vulnerability in Fatek Fvdesigner
FATEK Automation FvDesigner, Versions 1.5.88 and prior is vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbitrary code.
local
low complexity
fatek
7.8
2021-04-12 CVE-2021-27486 Unspecified vulnerability in Fatek Winproladder 3.28/3.30
FATEK Automation WinProladder Versions 3.30 and prior is vulnerable to an integer underflow, which may cause an out-of-bounds write and allow an attacker to execute arbitrary code.
local
low complexity
fatek
7.8
2021-03-03 CVE-2021-22683 Out-of-bounds Write vulnerability in Fatek Fvdesigner 1.1/1.1.2/1.5.76
Fatek FvDesigner Version 1.5.76 and prior is vulnerable to an out-of-bounds write while processing project files, allowing an attacker to craft a special project file that may permit arbitrary code execution.
local
low complexity
fatek CWE-787
7.8
2021-03-03 CVE-2021-22670 Access of Uninitialized Pointer vulnerability in Fatek Fvdesigner 1.1/1.1.2/1.5.76
An uninitialized pointer may be exploited in Fatek FvDesigner Version 1.5.76 and prior while the application is processing project files, allowing an attacker to craft a special project file that may permit arbitrary code execution.
local
low complexity
fatek CWE-824
7.8
2021-03-03 CVE-2021-22666 Out-of-bounds Write vulnerability in Fatek Fvdesigner 1.1/1.1.2/1.5.76
Fatek FvDesigner Version 1.5.76 and prior is vulnerable to a stack-based buffer overflow while project files are being processed, allowing an attacker to craft a special project file that may permit arbitrary code execution.
local
low complexity
fatek CWE-787
7.8
2021-03-03 CVE-2021-22662 Use After Free vulnerability in Fatek Fvdesigner 1.1/1.1.2/1.5.76
A use after free issue has been identified in Fatek FvDesigner Version 1.5.76 and prior in the way the application processes project files, allowing an attacker to craft a special project file that may permit arbitrary code execution.
local
low complexity
fatek CWE-416
7.8