CVE-2024-20723

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Feb 15, 2024
Updated: Feb 16, 2024
CWE ID 120

Summary

CVE-2024-20723 is a Buffer Overflow vulnerability affecting Substance3D's Painter software versions 9.1.1 and earlier. This issue could allow an attacker to execute arbitrary code in the context of the current user if a victim opens a specially crafted file. The flaw is caused by improper handling of input data and requires user interaction to exploit. This vulnerability poses a significant risk to users and highlights the importance of keeping software up to date with the latest security patches.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share