VYPR
High severity7.8NVD Advisory· Published Oct 27, 2022· Updated Jun 17, 2026

CVE-2022-3379

CVE-2022-3379

Description

Horner Automation's Cscape version 9.90 SP7 and prior does not properly validate user-supplied data. If a user opens a maliciously formed FNT file, then an attacker could execute arbitrary code within the current process by writing outside the memory buffer.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

11
  • Hornerautomation/Cscapellm-fuzzy11 versions
    <=9.90 SP7+ 10 more
    • (no CPE)range: <=9.90 SP7
    • cpe:2.3:a:hornerautomation:cscape:*:*:*:*:*:*:*:*range: <9.90
    • cpe:2.3:a:hornerautomation:cscape:9.90:-:*:*:*:*:*:*
    • cpe:2.3:a:hornerautomation:cscape:9.90:sp1:*:*:*:*:*:*
    • cpe:2.3:a:hornerautomation:cscape:9.90:sp2:*:*:*:*:*:*
    • cpe:2.3:a:hornerautomation:cscape:9.90:sp3:*:*:*:*:*:*
    • cpe:2.3:a:hornerautomation:cscape:9.90:sp4:*:*:*:*:*:*
    • cpe:2.3:a:hornerautomation:cscape:9.90:sp5:*:*:*:*:*:*
    • cpe:2.3:a:hornerautomation:cscape:9.90:sp6:*:*:*:*:*:*
    • cpe:2.3:a:hornerautomation:cscape:9.90:sp7:*:*:*:*:*:*
    • (no CPE)range: 0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.