V-SFT v6.2.5.0 and earlier contains an issue with out-of-bounds read in VS6EditData!Conv_Macro_Data function. Opening specially crafted V7 or V8 files may lead to crash, information disclosure, and arbitrary code execution.
References
Link | Resource |
---|---|
https://jvn.jp/en/vu/JVNVU97228144/ | Third Party Advisory |
https://monitouch.fujielectric.com/site/download-e/09vsft6_inf/Search.php | Release Notes Vendor Advisory |
Configurations
History
19 May 2025, 17:32
Type | Values Removed | Values Added |
---|---|---|
References | () https://jvn.jp/en/vu/JVNVU97228144/ - Third Party Advisory | |
References | () https://monitouch.fujielectric.com/site/download-e/09vsft6_inf/Search.php - Release Notes, Vendor Advisory | |
CPE | cpe:2.3:a:fujielectric:monitouch_v-sft:*:*:*:*:*:*:*:* | |
First Time |
Fujielectric monitouch V-sft
Fujielectric |
19 May 2025, 13:35
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
19 May 2025, 08:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-19 08:15
Updated : 2025-05-19 17:32
NVD link : CVE-2025-47754
Mitre link : CVE-2025-47754
CVE.ORG link : CVE-2025-47754
JSON object : View
Products Affected
fujielectric
- monitouch_v-sft
CWE
CWE-125
Out-of-bounds Read