← Back

CVE-2017-8803

nvd nist
Published: Jul 5, 2017Modified: May 13, 2026

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

Notepad++ 7.3.3 (32-bit) with Hex Editor Plugin v0.9.5 might allow user-assisted attackers to execute code via a crafted file, because of a "Data from Faulting Address controls Code Flow" issue. One threat model is a victim who obtains an untrusted crafted file from a remote location and issues several user-defined commands.

Affected (1)

Products: Mh Nexus: Hex Editor
1 product
Hex Editor
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 0.9.5
Running on/withPlatform Versions
Notepad Plus Plus
Notepad++
Version 7.3.3

References (2)

Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.