In SweetScape 010 Editor 9.0.1, improper validation of arguments in the internal implementation of the Memcpy function (provided by the scripting engine) allows an attacker to overwrite arbitrary memory, which could lead to code execution.
References
Link Resource
https://ereisr00.github.io/ Exploit Third Party Advisory
https://github.com/ereisr00/bagofbugz/blob/master/010Editor Exploit Third Party Advisory
https://www.sweetscape.com/010editor/manual/ReleaseNotes.htm Release Notes Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-07-22T19:31:57

Updated: 2019-07-22T19:31:57

Reserved: 2019-06-02T00:00:00


Link: CVE-2019-12551

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-07-22T20:15:10.173

Modified: 2020-08-24T17:37:01.140


Link: CVE-2019-12551

JSON object: View

cve-icon Redhat Information

No data.

CWE