Fuji Electric V-SFT Out-of-Bounds Read Vulnerability Allowing Information Disclosure

Vulnerability

An out-of-bounds read vulnerability has been identified in Fuji Electric V-SFT versions through 6.2.10.0. The issue resides in the VS6ComFile component, specifically within the load_link_inf function. This vulnerability can be exploited by opening a crafted V7 file, potentially leading to unauthorized information disclosure from the affected product.

Impact

Exploitation of this vulnerability may result in unauthorized information disclosure.

Remediation

Users are advised to update the software to the latest version. The improvement information for V-SFT version 6.2.11.0 is available on the Fuji Electric website.

Added: Apr 1, 2026, 11:30 PM
Updated: Apr 1, 2026, 11:30 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
4.2
remediation
7.7
relevance
5.1
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.