PT-2013-2527 · Cogent Real Time Systems · Cogent Datahub+3
Publicado
2013-04-05
·
Atualizado
2013-04-09
·
CVE-2013-0682
CVSS v2.0
7.5
Alta
| Vetor | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Cogent Real-Time Systems Cogent DataHub versions prior to 7.3.0
OPC DataHub versions prior to 6.4.22
Cascade DataHub versions prior to 6.4.22
DataHub QuickTrend versions prior to 7.3.0
Description
The issue allows remote attackers to cause a denial of service or possibly execute arbitrary code via malformed data in a formatted text command. This leads to out-of-bounds access to heap or stack memory.
Recommendations
For Cogent Real-Time Systems Cogent DataHub versions prior to 7.3.0, update to version 7.3.0 or later.
For OPC DataHub versions prior to 6.4.22, update to version 6.4.22 or later.
For Cascade DataHub versions prior to 6.4.22, update to version 6.4.22 or later.
For DataHub QuickTrend versions prior to 7.3.0, update to version 7.3.0 or later.
Correção
DoS
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Cascade Datahub
Cogent Datahub
Datahub Quicktrend
Opc Datahub