Vulnerabilities > Xinje > XD E Series PLC Program Tool > High

DATE CVE VULNERABILITY TITLE RISK
2022-05-11 CVE-2021-34605 Unspecified vulnerability in Xinje Xd/E Series PLC Program Tool
A zip slip vulnerability in XINJE XD/E Series PLC Program Tool up to version v3.5.1 can provide an attacker with arbitrary file write privilege when opening a specially-crafted project file.
local
low complexity
xinje
7.3
2022-05-11 CVE-2021-34606 Uncontrolled Search Path Element vulnerability in Xinje Xd/E Series PLC Program Tool
A vulnerability exists in XINJE XD/E Series PLC Program Tool in versions up to v3.5.1 that can allow an authenticated, local attacker to load a malicious DLL.
local
low complexity
xinje CWE-427
7.3