CVE-2019-13541
Summary
| CVE | CVE-2019-13541 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-10-18 19:15:00 UTC |
| Updated | 2020-10-09 12:54:00 UTC |
| Description | In Horner Automation Cscape 9.90 and prior, an improper input validation vulnerability has been identified that may be exploited by processing files lacking user input validation. This may allow an attacker to access information and remotely execute arbitrary code. |
Risk And Classification
Problem Types: CWE-787
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Hornerautomation | Cscape | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Horner Automation Cscape | CISA | MISC | www.us-cert.gov | Mitigation, Third Party Advisory, US Government Resource |
| ZDI-19-902 | Zero Day Initiative | MISC | www.zerodayinitiative.com | Third Party Advisory, VDB Entry |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.