5
CVSSv2

CVE-2012-3007

Published: 05/07/2012 Updated: 14/08/2012
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Stack-based buffer overflow in slssvc.exe prior to 58.x in Invensys Wonderware SuiteLink in the Invensys System Platform software suite, as used in InTouch/Wonderware Application Server IT prior to 10.5 and WAS prior to 3.5, DASABCIP prior to 4.1 SP2, DASSiDirect prior to 3.0, DAServer Runtime Components prior to 3.0 SP2, and other products, allows remote malicious users to cause a denial of service (daemon crash or hang) via a long Unicode string.

Vulnerable Product Search on Vulmon Subscribe to Product

invensys wonderware application server 3.1

invensys daserver runtime components

invensys dassidirect

invensys wonderware application server 3.0

invensys dasabcip

invensys wonderware application server

invensys wonderware application server 3.1.201

invensys wonderware application server 3.0.200

invensys intouch\\/wonderware application server

invensys dasabcip 4.1

invensys daserver runtime components 3.0