CVE-2024-29219

HIGH

KV STUDIO <11.64 - Info Disclosure/Arbitrary Code Execution

Title source: llm
STIX 2.1

Description

Out-of-bounds read vulnerability exists in KV STUDIO Ver.11.64 and earlier and KV REPLAY VIEWER Ver.2.64 and earlier, and VT5-WX15/WX12 Ver.6.02 and earlier, which may lead to information disclosure or arbitrary code execution by having a user of the affected product open a specially crafted file.

References (3)

Core 3

Scores

CVSS v3 7.8
EPSS 0.0024
EPSS Percentile 47.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-125
Status published
Products (4)
keyence/kv_replay_viewer < 2.64
keyence/kv_studio < 11.64
keyence/vt5-wx12_firmware < 6.02
keyence/vt5-wx15_firmware < 6.02
Published Apr 15, 2024
Tracked Since Feb 18, 2026