CVE-2024-38658 is an Out-of-bounds read vulnerability affecting V-Server and V-Server Lite versions 4.0.19.0 and earlier. This vulnerability can be triggered when a user opens a specially crafted file, potentially leading to information disclosure or arbitrary code execution. Rated 7.8 HIGH on CVSS, it requires user interaction (UI:R) and local access (AV:L) for exploitation, with high impacts on confidentiality, integrity, and availability. Currently, there is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| FUJI ELECTRIC CO., LTD. And Hakko Electronics Co., Ltd. | V-Server Lite | v4.0.19.0 and earlierCNA affected | |
| FUJI ELECTRIC CO., LTD. And Hakko Electronics Co., Ltd. | V-Server | v4.0.19.0 and earlierCNA affected |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.