Security Advisory

CVE-2020-7852

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-03-24 21:10:21
Last updated 2024-09-17 01:36:01
Assigner krcert
State PUBLISHED

Description

DaviewIndy has a Heap-based overflow vulnerability, triggered when the user opens a malformed ex.j2c format file that is mishandled by Daview.exe. Attackers could exploit this and arbitrary code execution.