Stack-based buffer overflow in the HMIWeb Browser HSCDSPRenderDLL ActiveX control in Honeywell Process Solutions (HPS) Experion R2xx, R30x, R31x, and R400.x; Honeywell Building Solutions (HBS) Enterprise Building Manager R400 and R410.1; and Honeywell Environmental Combustion and Controls (ECC) SymmetrE R410.1 allows remote attackers to execute arbitrary code via unspecified vectors.
References
Link | Resource |
---|---|
http://www.us-cert.gov/control_systems/pdf/ICSA-12-150-01.pdf | Third Party Advisory US Government Resource |
https://www.honeywellprocess.com/en-US/support/pages/all-notifications.aspx | Vendor Advisory |
http://www.us-cert.gov/control_systems/pdf/ICSA-12-150-01.pdf | Third Party Advisory US Government Resource |
https://www.honeywellprocess.com/en-US/support/pages/all-notifications.aspx | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:34
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.us-cert.gov/control_systems/pdf/ICSA-12-150-01.pdf - Third Party Advisory, US Government Resource | |
References | () https://www.honeywellprocess.com/en-US/support/pages/all-notifications.aspx - Vendor Advisory |
Information
Published : 2012-09-08 10:28
Updated : 2024-11-21 01:34
NVD link : CVE-2012-0254
Mitre link : CVE-2012-0254
CVE.ORG link : CVE-2012-0254
JSON object : View
Products Affected
honeywell
- enterprise_building_manager
- symmetre
- experion
CWE
CWE-787
Out-of-bounds Write