CVE-2025-61864

Severity CVSS v4.0:
HIGH
Type:
CWE-416 Use After Free
Publication date:
10/10/2025
Last modified:
27/10/2025

Description

A use after free vulnerability exists in VS6ComFile!load_link_inf of V-SFT v6.2.7.0 and earlier. Opening specially crafted V-SFT files may lead to information disclosure, affected system's abnormal end (ABEND), and arbitrary code execution.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:fujielectric:monitouch_v-sft:*:*:*:*:*:*:*:* 6.2.7.0 (including)