Stack-based buffer overflow in the CmpWebServer component in 3S CoDeSys 3.4 SP4 Patch 2 and earlier, as used on the ABB AC500 PLC and possibly other products, allows remote attackers to execute arbitrary code via a long URI to TCP port 8080.
References
Configurations
Information
Published : 2011-12-24 17:55
Updated : 2013-05-20 20:12
NVD link : CVE-2011-5007
Mitre link : CVE-2011-5007
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
3ssoftware
- codesys