CVE-2014-9200
N/A
N/A
Summary
Stack-based buffer overflow in an unspecified DLL file in a DTM development kit in Schneider Electric Unity Pro, SoMachine, SoMove, SoMove Lite, Modbus Communication Library 2.2.6 and earlier, CANopen Communication Library 1.0.2 and earlier, EtherNet/IP Communication Library 1.0.0 and earlier, EM X80 Gateway DTM (MB TCP/SL), Advantys DTM for OTB, Advantys DTM for STB, KINOS DTM, SOLO DTM, and Xantrex DTMs allows remote attackers to execute arbitrary code via unspecified vectors.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Schneider Electric | Unity Pro | all versions | affected |
| Schneider Electric | SoMachine | all versions | affected |
| Schneider Electric | SoMove | all versions | affected |
| Schneider Electric | SoMove Lite | all versions | affected |
| Schneider Electric | Modbus Communication Library | 0 <= Version 2.2.6 | affected |
| Schneider Electric | CANopen Communication Library | 0 <= Version 1.0.2 | affected |
| Schneider Electric | EtherNet/IP Communication Library | 0 <= Version 1.0.0 | affected |
| Schneider Electric | EM X80 Gateway DTM (MB TCP/SL) | all versions | affected |
| Schneider Electric | Advantys DTMs (OTB, STB) | all versions | affected |
| Schneider Electric | KINOS DTM | all versions | affected |
| Schneider Electric | SOLO DTM | all versions | affected |
| Schneider Electric | Xantrex DTM | all versions | affected |
Weaknesses
- CWE-121: CWE-121
ADP Enrichment
CVE Program Container
Additional References
- http://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2015-009-01
- http://www.securityfocus.com/bid/72335
- https://ics-cert.us-cert.gov/advisories/ICSA-15-027-02
References
- https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2015-009-01
- http://www.securityfocus.com/bid/72335
- https://www.cisa.gov/news-events/ics-advisories/icsa-15-027-02
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.