CVE-2020-27280

Severity CVSS v4.0:
Pending analysis
Type:
CWE-416 Use After Free
Publication date:
26/01/2021
Last modified:
02/02/2021

Description

A use after free issue has been identified in the way ISPSoft(v3.12 and prior) processes project files, allowing an attacker to craft a special project file that may allow arbitrary code execution.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:deltaww:ispsoft:*:*:*:*:*:*:*:* 3.12 (including)


References to Advisories, Solutions, and Tools