
CVE-2022-47908
https://notcve.org/view.php?id=CVE-2022-47908
03 Jan 2023 — Stack-based buffer overflow vulnerability in V-Server v4.0.12.0 and earlier allows a local attacker to obtain the information and/or execute arbitrary code by having a user to open a specially crafted project file. • https://jvn.jp/en/vu/JVNVU92811888/index.html • CWE-787: Out-of-bounds Write •

CVE-2022-1523 – Fuji Electric D300win Write-what-where condition
https://notcve.org/view.php?id=CVE-2022-1523
19 Oct 2022 — Fuji Electric D300win prior to version 3.7.1.17 is vulnerable to a write-what-where condition, which could allow an attacker to overwrite program memory to manipulate the flow of information. Fuji Electric D300win versiones anteriores a 3.7.1.17, es vulnerable a una condición de escritura en cualquier lugar, lo que podría permitir a un atacante sobrescribir la memoria del programa para manipular el flujo de información • https://www.cisa.gov/uscert/ics/advisories/icsa-22-242-05 • CWE-123: Write-what-where Condition CWE-787: Out-of-bounds Write •

CVE-2022-1738 – Fuji Electric D300win Out-of-bounds Read
https://notcve.org/view.php?id=CVE-2022-1738
19 Oct 2022 — Fuji Electric D300win prior to version 3.7.1.17 is vulnerable to an out-of-bounds read, which could allow an attacker to leak sensitive data from the process memory. Fuji Electric D300win versiones anteriores a 3.7.1.17, es vulnerable a una lectura fuera de límites, que podría permitir a un atacante filtrar datos confidenciales de la memoria del proceso • https://www.cisa.gov/uscert/ics/advisories/icsa-22-242-05 • CWE-125: Out-of-bounds Read •

CVE-2022-1888 – Fuji Electric Alpha7 PC Loader Fuji Electric Alpha7 PC Loader
https://notcve.org/view.php?id=CVE-2022-1888
31 Aug 2022 — Alpha7 PC Loader (All versions) is vulnerable to a stack-based buffer overflow while processing a specifically crafted project file, which may allow an attacker to execute arbitrary code. Alpha7 PC Loader (Todas las versiones) es vulnerable a un desbordamiento del búfer en la región stack de la memoria mientras procesa un archivo de proyecto específicamente diseñado, lo que puede permitir a un atacante ejecutar código arbitrario • https://www.cisa.gov/uscert/ics/advisories/icsa-22-151-01 • CWE-121: Stack-based Buffer Overflow CWE-787: Out-of-bounds Write •

CVE-2022-30549
https://notcve.org/view.php?id=CVE-2022-30549
16 Jun 2022 — Out-of-bounds read vulnerability exists in V-Server v4.0.11.0 and earlier and V-Server Lite v4.0.13.0 and earlier, which may allow an attacker to obtain information and/or execute arbitrary code by having a user to open a specially crafted image file. Se presenta una vulnerabilidad de lectura fuera de límites en V-Server v4.0.11.0 y anteriores y V-Server Lite v4.0.13.0 y anteriores, que puede permitir a un atacante obtener información y/o ejecutar código arbitrario haciendo que un usuario abra un archivo de... • https://jvn.jp/en/vu/JVNVU93134398/index.html • CWE-125: Out-of-bounds Read •

CVE-2022-30546
https://notcve.org/view.php?id=CVE-2022-30546
16 Jun 2022 — Out-of-bounds read vulnerability exists in the simulator module contained in the graphic editor 'V-SFT' versions prior to v6.1.6.0, which may allow an attacker to obtain information and/or execute arbitrary code by having a user to open a specially crafted image file. Se presenta una vulnerabilidad de lectura fuera de límites en el módulo simulador contenido en el editor gráfico "V-SFT" versiones anteriores a v6.1.6.0, que puede permitir a un atacante obtener información y/o ejecutar código arbitrario hacie... • https://jvn.jp/en/vu/JVNVU99188133/index.html • CWE-125: Out-of-bounds Read •

CVE-2022-30538
https://notcve.org/view.php?id=CVE-2022-30538
16 Jun 2022 — Out-of-bounds write vulnerability exists in the simulator module contained in the graphic editor 'V-SFT' versions prior to v6.1.6.0, which may allow an attacker to obtain information and/or execute arbitrary code by having a user to open a specially crafted image file. Se presenta una vulnerabilidad de escritura fuera de límites en el módulo simulador contenido en el editor gráfico "V-SFT" versiones anteriores a v6.1.6.0, que puede permitir a un atacante obtener información y/o ejecutar código arbitrario ha... • https://jvn.jp/en/vu/JVNVU99188133/index.html • CWE-787: Out-of-bounds Write •

CVE-2022-29925
https://notcve.org/view.php?id=CVE-2022-29925
14 Jun 2022 — Access of uninitialized pointer vulnerability exists in the simulator module contained in the graphic editor 'V-SFT' versions prior to v6.1.6.0, which may allow an attacker to obtain information and/or execute arbitrary code by having a user to open a specially crafted image file. Se presenta una vulnerabilidad de acceso de puntero no inicializado en el módulo simulador contenido en el editor gráfico "V-SFT" de versiones anteriores a la v6.1.6.0, que puede permitir a un atacante obtener información y/o ejec... • https://jvn.jp/en/vu/JVNVU99188133/index.html • CWE-824: Access of Uninitialized Pointer •

CVE-2022-29524
https://notcve.org/view.php?id=CVE-2022-29524
14 Jun 2022 — Out-of-bounds write vulnerability exists in V-Server v4.0.11.0 and earlier and V-Server Lite v4.0.13.0 and earlier, which may allow an attacker to obtain information and/or execute arbitrary code by having a user to open a specially crafted image file. Se presenta una vulnerabilidad de escritura fuera de límites en V-Server versiones v4.0.11.0 y anteriores y V-Server Lite versiones v4.0.13.0 y anteriores, que puede permitir a un atacante obtener información y/o ejecutar código arbitrario haciendo que un usu... • https://jvn.jp/en/vu/JVNVU93134398/index.html • CWE-787: Out-of-bounds Write •

CVE-2022-29522
https://notcve.org/view.php?id=CVE-2022-29522
14 Jun 2022 — Use after free vulnerability exists in the simulator module contained in the graphic editor 'V-SFT' versions prior to v6.1.6.0, which may allow an attacker to obtain information and/or execute arbitrary code by having a user to open a specially crafted image file. Se presenta una vulnerabilidad de uso de memoria previamente liberada en el módulo simulador contenido en el editor gráfico "V-SFT" versiones anteriores a v6.1.6.0, que puede permitir a un atacante obtener información y/o ejecutar código arbitrari... • https://jvn.jp/en/vu/JVNVU99188133/index.html • CWE-416: Use After Free •