The vulnerability occurs in the parsing of CSP files. The issues result
from the lack of proper validation of user-supplied data, which could
allow reading past the end of allocated data structures, resulting in
execution of arbitrary code.
CVE ID: CVE-2024-12212
CVSS Base Severity: HIGH
CVSS Base Score: 7.8
Vendor: Horner Automation
Product: Cscape
EPSS Score: 0.04% (probability of being exploited)
EPSS Percentile: 11.48% (scored less or equal to compared to others)
EPSS Date: 2025-02-04 (when was this score calculated)