CVE-2014-9188
N/A
N/A
Summary
Buffer overflow in an ActiveX control in MDraw30.ocx in Schneider Electric ProClima before 6.1.7 allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-8513 and CVE-2014-8514. NOTE: this may be clarified later based on details provided by researchers.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Schneider Electric | ProClima | 0 <= 6.0.1 | affected |
Weaknesses
- CWE-77: CWE-77
ADP Enrichment
CVE Program Container
Additional References
- http://download.schneider-electric.com/files?p_Doc_Ref=SEVD%202014-344-01
- https://ics-cert.us-cert.gov/advisories/ICSA-14-350-01
References
- http://download.schneider-electric.com/files?p_Doc_Ref=SEVD%202014-344-01
- https://www.cisa.gov/news-events/ics-advisories/icsa-14-350-01
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.