CVE-2023-41374
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Sep 20, 2023
Updated: Sep 22, 2023
CWE ID 415
Summary
CVE-2023-41374 is a vulnerability affecting Kostac PLC Programming Software Version 1.6.11.0 and earlier. This issue involves a double free condition, allowing arbitrary code execution. The vulnerability is triggered when a user opens a maliciously crafted project file saved using Kostac PLC Programming Software Version 1.6.9.0 and earlier. The vendor recommends saving these project files again using Kostac PLC Programming Software Version 1.6.10.0 or later to prevent the exploitation of this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.