The GENESIS32 IcoSetServer ActiveX control in ICONICS GENESIS32 9.21 and BizViz 9.21 configures the trusted zone on the basis of user input, which allows remote attackers to execute arbitrary code via a crafted web site, related to a "Workbench32/WebHMI component SetTrustedZone Policy vulnerability."
References
Link | Resource |
---|---|
http://www.us-cert.gov/control_systems/pdf/ICSA-11-182-01.pdf | US Government Resource |
http://www.us-cert.gov/control_systems/pdf/ICSA-11-182-01.pdf | US Government Resource |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:33
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.us-cert.gov/control_systems/pdf/ICSA-11-182-01.pdf - US Government Resource |
Information
Published : 2012-04-18 17:55
Updated : 2024-11-21 01:33
NVD link : CVE-2011-5088
Mitre link : CVE-2011-5088
CVE.ORG link : CVE-2011-5088
JSON object : View
Products Affected
iconics
- bizviz
- genesis32
CWE