cvedb.io
CVE-2023-22421
HIGH · CVSS 7.8
EPSS exploitation probability: 0%
Published 2023-03-06T00:15:10.580 · Last modified 2026-06-17T05:35:24.980

Summary

Out-of-bounds read vulnerability exists in Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) Version 1.6.9.0 and earlier. The insufficient buffer size for the PLC program instructions leads to out-of-bounds read. As a result, opening a specially crafted project file may lead to information disclosure and/or arbitrary code execution.

Affected products

jtekt — kostac_plc_programming_software

Does this affect you?

Add your gear to cvedb and we'll alert you only when jtekt ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.