CVE-2025-61856

Severity CVSS v4.0:
HIGH
Type:
CWE-121 Stack-based Buffer Overflow
Publication date:
10/10/2025
Last modified:
27/10/2025

Description

A stack-based buffer overflow vulnerability exists in VS6ComFile!CV7BaseMap::WriteV7DataToRom of V-SFT v6.2.7.0 and earlier. Opening specially crafted V-SFT files may lead to information disclosure, affected system's abnormal end (ABEND), and arbitrary code execution.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:fujielectric:monitouch_v-sft:*:*:*:*:*:*:*:* 6.2.7.0 (including)