Arbitrary Code Execution Vulnerability in FATEK FvDesigner Version 1.5.103 and Prior

Arbitrary Code Execution Vulnerability in FATEK FvDesigner Version 1.5.103 and Prior

CVE-2022-2866 · HIGH Severity

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

FATEK FvDesigner version 1.5.103 and prior is vulnerable to an out-of-bounds write while processing project files. If a valid user is tricked into using maliciously crafted project files, an attacker could achieve arbitrary code execution.

Learn more about our User Device Pen Test.