CVE-2014-0765
N/A
N/A
Summary
To exploit this vulnerability, the attacker sends data from the GotoCmd argument to control. If the value of the argument is overly long, the static stack buffer can be overflowed. This will allow the attacker to execute arbitrary code remotely.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Advantech | WebAccess | 0 <= 7.1 | affected |
| Advantech | WebAccess | 7.2 | unaffected |
Weaknesses
- CWE-121: CWE-121
ADP Enrichment
CVE Program Container
Additional References
References
- https://www.cisa.gov/news-events/ics-advisories/icsa-14-079-03
- http://www.securityfocus.com/bid/66740
- http://webaccess.advantech.com/
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.