CVE-2011-5088

The GENESIS32 IcoSetServer ActiveX control in ICONICS GENESIS32 9.21 and BizViz 9.21 configures the trusted zone on the basis of user input, which allows remote attackers to execute arbitrary code via a crafted web site, related to a "Workbench32/WebHMI component SetTrustedZone Policy vulnerability."
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:iconics:bizviz:9.21:*:*:*:*:*:*:*
cpe:2.3:a:iconics:genesis32:9.21:*:*:*:*:*:*:*

History

21 Nov 2024, 01:33

Type Values Removed Values Added
References () http://www.us-cert.gov/control_systems/pdf/ICSA-11-182-01.pdf - US Government Resource () http://www.us-cert.gov/control_systems/pdf/ICSA-11-182-01.pdf - US Government Resource

Information

Published : 2012-04-18 17:55

Updated : 2024-11-21 01:33


NVD link : CVE-2011-5088

Mitre link : CVE-2011-5088

CVE.ORG link : CVE-2011-5088


JSON object : View

Products Affected

iconics

  • bizviz
  • genesis32