Security Advisory

CVE-2020-7827

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-07-30 13:22:26
Last updated 2024-08-04 09:41:01
Assigner krcert
State PUBLISHED

Description

DaviewIndy 8.98.7 and earlier version contain Use-After-Free vulnerability, triggered when the user opens a malformed specific file that is mishandled by Daview.exe. Attackers could exploit this and arbitrary code execution.