Описание
Integer overflow in an unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code via a large value for an integer parameter, leading to a buffer overflow.
Ссылки
- Vendor Advisory
- US Government Resource
- Broken Link
- Vendor Advisory
- US Government Resource
- Broken Link
Уязвимые конфигурации
Конфигурация 1Версия от 6.0 (включая) до 10.0 (включая)
Одно из
cpe:2.3:a:arcinfo:frontvue:-:*:*:*:*:*:*:*
cpe:2.3:a:arcinfo:pcvue:*:*:*:*:*:*:*:*
cpe:2.3:a:arcinfo:plantvue:-:*:*:*:*:*:*:*
EPSS
Процентиль: 94%
0.07417
Низкий
9.3 Critical
CVSS2
Дефекты
CWE-189
Связанные уязвимости
github
больше 4 лет назад
Integer overflow in an unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code via a large value for an integer parameter, leading to a buffer overflow.
EPSS
Процентиль: 94%
0.07417
Низкий
9.3 Critical
CVSS2
Дефекты
CWE-189