10
CVSSv2

CVE-2011-1564

Published: 05/04/2011 Updated: 22/09/2011
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple integer overflows in the HMI application in DATAC RealFlex RealWin 2.1 (Build 6.1.10.10) and previous versions allow remote malicious users to execute arbitrary code via crafted (1) On_FC_MISC_FCS_MSGBROADCAST and (2) On_FC_MISC_FCS_MSGSEND packets, which trigger a heap-based buffer overflow.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

realflex realwin

realflex realwin 2.0

realflex realwin 1.06

Exploits

Sources: aluigiorg/adv/realwin_2-advtxt aluigiorg/adv/realwin_3-advtxt aluigiorg/adv/realwin_4-advtxt aluigiorg/adv/realwin_5-advtxt aluigiorg/adv/realwin_6-advtxt aluigiorg/adv/realwin_7-advtxt aluigiorg/adv/realwin_8-advtxt Advisory Archive: githubcom/offensive-security/expl ...