CNNVD-202510-1453 Information
CNNVD ID
CNNVD-202510-1453
Related CVE
- CNNVD Published: 2025-10-10
Description (Chinese)
Fuji Electric V-SFT是日本富士电机(Fuji Electric)公司的一款屏幕配置软件。 Fuji Electric V-SFT v6.2.7.0及之前版本存在缓冲区错误漏洞,该漏洞源于VS6ComFile!get_ovlp_element_size存在越界读取,可能导致信息泄露、系统异常终止和执行任意代码。
Description (English)
Fuji Electric V-SFT is a screen configuration software for Fuji Electric, Japan. Fuji Electric V-SFT v6.2.7.0 and previous versions had an error loophole in the buffer zone, which stemmed from the presence of VS6ComFile!get ovlp element size for cross-border reading, which could lead to information leaks, anomalous termination of the system and the enforcement of arbitrary codes.
Hazard Level
Medium
Vulnerability Type
缓冲区错误
Affected Vendor
富士电机
Published
2025-10-10
Last Modified
2026-02-24
References
https://jvn.jp/en/vu/JVNVU90008453/ https://monitouch.fujielectric.com/site/download-e/09vsft6_inf/Search.php
Patch
https://monitouch.fujielectric.com/site/download-e/09vsft6_inf/Search.php
Share on: