Beveiligingsadvies

CVE-2019-5088

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2019-11-05 20:29:34
Laatst bijgewerkt 2024-08-04 19:47:56
Toegewezen door talos
CVSS-score 8.8
Status PUBLISHED

Beschrijving

An exploitable memory corruption vulnerability exists in Investintech Able2Extract Professional 14.0.7 x64. A specially crafted BMP file can cause an out-of-bounds memory write, allowing a potential attacker to execute arbitrary code on the victim machine. Can trigger this vulnerability by sending the user a specially crafted BMP file.