CVE-2015-7937

Stack-based buffer overflow in the GoAhead Web Server on Schneider Electric Modicon M340 PLC BMXNOx and BMXPx devices allows remote attackers to execute arbitrary code via a long password in HTTP Basic Authentication data.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:h:schneider-electric:bmxnor0200:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:bmxnor0200h:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:bmxnoe0110:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:bmxnoe0110h:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:bmxp3420302h:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:bmxpra0100:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:bmxnoe0100:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:bmxnoe0100h:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:bmxp342030:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:bmxp3420302:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:bmxnoc0401:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:bmxp342020:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:bmxp342020h:-:*:*:*:*:*:*:*

Information

Published : 2015-12-21 03:59

Updated : 2016-11-28 11:45


NVD link : CVE-2015-7937

Mitre link : CVE-2015-7937


JSON object : View

CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

Advertisement

dedicated server usa

Products Affected

schneider-electric

  • bmxnoe0100
  • bmxp3420302h
  • bmxnor0200
  • bmxnoe0110h
  • bmxp342020
  • bmxp3420302
  • bmxp342020h
  • bmxnoe0110
  • bmxnoe0100h
  • bmxnor0200h
  • bmxnoc0401
  • bmxp342030
  • bmxpra0100