CVE-2022-3461

In PHOENIX CONTACT Automationworx Software Suite up to version 1.89 manipulated PC Worx or Config+ files could lead to a heap buffer overflow and a read access violation. Availability, integrity, or confidentiality of an application programming workstation might be compromised by attacks using these vulnerabilities.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:phoenixcontact:automationworx_software_suite:1.89:*:*:*:*:*:*:*

History

21 Nov 2024, 07:19

Type Values Removed Values Added
References () https://cert.vde.com/en/advisories/VDE-2022-048/ - Third Party Advisory () https://cert.vde.com/en/advisories/VDE-2022-048/ - Third Party Advisory

Information

Published : 2022-11-15 11:15

Updated : 2024-11-21 07:19


NVD link : CVE-2022-3461

Mitre link : CVE-2022-3461

CVE.ORG link : CVE-2022-3461


JSON object : View

Products Affected

phoenixcontact

  • automationworx_software_suite
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer