CVE Database
/

CVE-2023-22424

Back to search

CVE-2023-22424

Published: Mar 5, 2023

Modified: Mar 7, 2025

PUBLISHED

Description

Use-after-free vulnerability exists in Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) Version 1.6.9.0 and earlier. With the abnormal value given as the maximum number of columns for the PLC program, the process accesses the freed memory. As a result, opening a specially crafted project file may lead to information disclosure and/or arbitrary code execution.

VendorProductVersions

JTEKT ELECTRONICS CORPORATION

Kostac PLC Programming Software (Former name: Koyo PLC Programming Software)

affected
Version 1.6.9.0 and earlier

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now