#VU50309 Heap-based buffer overflow in PlanMaker 2021 - CVE-2020-27247
Published: February 4, 2021
PlanMaker 2021
SoftMaker
Description
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to a boundary error in the Office Art record-parsing functionality within the Version/Instance 0x0002. A remote attacker can use a specially crafted document, trigger heap-based buffer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.