Rewterz
Rewterz Threat Alert – Cutlet Maker Malware That Spits Cash Out of ATMs Has Spread Across the World
October 18, 2019
Rewterz
Rewterz Threat Advisory – CVE-2019-0065 – Juniper Junos OS Vulnerability Could Allow for Denial of Service
October 18, 2019

Rewterz Threat Advisory – Horner Automation Cscape Code Execution Vulnerabilities

Severity

Medium

Analysis Summary

CVE-2019-13541

An improper input validation vulnerability has been identified that may be exploited by processing files lacking user input validation. This may allow an attacker to access information and remotely execute arbitrary code.

CVE-2019-13545

Improper validation of data may cause the system to write outside the intended buffer area, which may allow arbitrary code execution.

Impact

Execution of arbitrary code

Affected Vendors

Horner Automation

Affected Products

Cscape 9.90 and prior

Remediation

Horner Automation recommends affected users update to Cscape Version 9.90 SP1 or later, which is available for download.