High severity7.8NVD Advisory· Published Aug 25, 2021· Updated Jun 17, 2026
CVE-2021-32975
CVE-2021-32975
Description
Cscape (All Versions prior to 9.90 SP5) lacks proper validation of user-supplied data when parsing project files. This could lead to an out-of-bounds read. An attacker could leverage this vulnerability to execute code in the context of the current process.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8- Cscape/Cscapedescription
cpe:2.3:a:hornerautomation:cscape:*:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:hornerautomation:cscape:*:*:*:*:*:*:*:*range: <9.90
- cpe:2.3:a:hornerautomation:cscape:9.90:-:*:*:*:*:*:*
- cpe:2.3:a:hornerautomation:cscape:9.90:sp1:*:*:*:*:*:*
- cpe:2.3:a:hornerautomation:cscape:9.90:sp2:*:*:*:*:*:*
- cpe:2.3:a:hornerautomation:cscape:9.90:sp3:*:*:*:*:*:*
- cpe:2.3:a:hornerautomation:cscape:9.90:sp4:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- us-cert.cisa.gov/ics/advisories/icsa-21-224-02nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.