VYPR
High severity7.8NVD Advisory· Published Oct 8, 2024· Updated Jun 17, 2026

CVE-2024-8422

CVE-2024-8422

Description

CWE-416: Use After Free vulnerability exists that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when application user opens a malicious Zelio Soft 2 project file.

Affected products

2
  • cpe:2.3:a:schneider-electric:zelio_soft_2:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:schneider-electric:zelio_soft_2:*:*:*:*:*:*:*:*range: <5.4.2.2
    • (no CPE)range: Versions prior to 5.4.2.2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.