Multiple stack-based buffer overflows in Advantech WebAccess before 7.2 allow remote attackers to execute arbitrary code via a long string in the (1) ProjectName, (2) SetParameter, (3) NodeName, (4) CCDParameter, (5) SetColor, (6) AlarmImage, (7) GetParameter, (8) GetColor, (9) ServerResponse, (10) SetBaud, or (11) IPAddress parameter to an ActiveX control in (a) webvact.ocx, (b) dvs.ocx, or (c) webdact.ocx.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2014-07-19T01:00:00
Updated: 2024-08-06T10:14:25.490Z
Reserved: 2014-03-13T00:00:00
Link: CVE-2014-2364
Vulnrichment
No data.
NVD
Status : Modified
Published: 2014-07-19T05:09:27.563
Modified: 2024-11-21T02:06:09.310
Link: CVE-2014-2364
Redhat
No data.