CNNVD-202510-1453 Information

CNNVD ID

CNNVD-202510-1453

CVE-2025-61862

  • CNNVD Published: 2025-10-10

Description (Chinese)

Fuji Electric V-SFT是日本富士电机(Fuji Electric)公司的一款屏幕配置软件。 Fuji Electric V-SFT v6.2.7.0及之前版本存在缓冲区错误漏洞,该漏洞源于VS6ComFile!get_ovlp_element_size存在越界读取,可能导致信息泄露、系统异常终止和执行任意代码。

Description (English)

Fuji Electric V-SFT is a screen configuration software for Fuji Electric, Japan. Fuji Electric V-SFT v6.2.7.0 and previous versions had an error loophole in the buffer zone, which stemmed from the presence of VS6ComFile!get ovlp element size for cross-border reading, which could lead to information leaks, anomalous termination of the system and the enforcement of arbitrary codes.

Hazard Level

Medium

Vulnerability Type

缓冲区错误

Affected Vendor

富士电机

Published

2025-10-10

Last Modified

2026-02-24

References

https://jvn.jp/en/vu/JVNVU90008453/ https://monitouch.fujielectric.com/site/download-e/09vsft6_inf/Search.php

Patch

https://monitouch.fujielectric.com/site/download-e/09vsft6_inf/Search.php

Share on: