Vulnerabilities > Fatek > Winproladder > High

DATE CVE VULNERABILITY TITLE RISK
2021-12-28 CVE-2021-43554 Out-of-bounds Write vulnerability in Fatek Winproladder 3.28/3.30
FATEK WinProladder Versions 3.30_24518 and prior are vulnerable to an out-of-bounds write while processing project files, which may allow an attacker to execute arbitrary code.
local
low complexity
fatek CWE-787
7.8
2021-12-28 CVE-2021-43556 Out-of-bounds Write vulnerability in Fatek Winproladder 3.28/3.30
FATEK WinProladder Versions 3.30_24518 and prior are vulnerable to a stack-based buffer overflow while processing project files, which may allow an attacker to execute arbitrary code.
local
low complexity
fatek CWE-787
7.8
2021-10-18 CVE-2021-38426 Unspecified vulnerability in Fatek Winproladder 3.28/3.30
FATEK Automation WinProladder versions 3.30 and prior lacks proper validation of user-supplied data when parsing project files, which could result in an out-of-bounds write.
local
low complexity
fatek
7.8
2021-10-18 CVE-2021-38430 Unspecified vulnerability in Fatek Winproladder 3.28/3.30
FATEK Automation WinProladder versions 3.30 and prior proper validation of user-supplied data when parsing project files, which could result in a stack-based buffer overflow.
local
low complexity
fatek
7.8
2021-10-18 CVE-2021-38434 Unspecified vulnerability in Fatek Winproladder 3.28/3.30
FATEK Automation WinProladder versions 3.30 and prior lacks proper validation of user-supplied data when parsing project files, which could result in an unexpected sign extension.
local
low complexity
fatek
7.8
2021-10-18 CVE-2021-38436 Out-of-bounds Write vulnerability in Fatek Winproladder 3.28/3.30
FATEK Automation WinProladder versions 3.30 and prior lacks proper validation of user-supplied data when parsing project files, which could result in a memory-corruption condition.
local
low complexity
fatek CWE-787
7.8
2021-10-18 CVE-2021-38438 Unspecified vulnerability in Fatek Winproladder 3.28/3.30
A use after free vulnerability in FATEK Automation WinProladder versions 3.30 and prior may be exploited when a valid user opens a malformed project file, which may allow arbitrary code execution.
local
low complexity
fatek
7.8
2021-10-18 CVE-2021-38442 Out-of-bounds Write vulnerability in Fatek Winproladder 3.28/3.30
FATEK Automation WinProladder versions 3.30 and prior lacks proper validation of user-supplied data when parsing project files, which could result in a heap-corruption condition.
local
low complexity
fatek CWE-787
7.8
2021-04-12 CVE-2021-27486 Unspecified vulnerability in Fatek Winproladder 3.28/3.30
FATEK Automation WinProladder Versions 3.30 and prior is vulnerable to an integer underflow, which may cause an out-of-bounds write and allow an attacker to execute arbitrary code.
local
low complexity
fatek
7.8
2020-09-30 CVE-2020-16234 Unspecified vulnerability in Fatek Winproladder 3.28
In PLC WinProladder Version 3.28 and prior, a stack-based buffer overflow vulnerability can be exploited when a valid user opens a specially crafted file, which may allow an attacker to remotely execute arbitrary code.
local
low complexity
fatek
7.8