CVE-2010-4740
high · 9.3Stack-based buffer overflow in WTclient.dll in SCADA Engine BACnet OPC Client before 1.0.25 allows user-assisted remote attackers to execute arbitrary code via a crafted .csv file, related to a status log message.
9.3
CVSS
41.6%
EPSS (exploit prob.)
99th
EPSS percentile
2011-02-16
Published
AV:N/AC:M/Au:N/C:C/I:C/A:C
Weaknesses
CWE-119
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| scadaengine | bacnet_opc_client | <= 1.0.24 |
Check a specific version with /api/v1/cve/match.
References
- http://packetstormsecurity.org/1009-exploits/bacnet-overflow.py.txt
- http://secunia.com/advisories/41466
- http://securityreason.com/securityalert/8083
- http://www.kb.cert.org/vuls/id/660688
- http://www.securityfocus.com/bid/43289
- http://www.us-cert.gov/control_systems/pdf/ICSA-10-264-01.pdf
- http://packetstormsecurity.org/1009-exploits/bacnet-overflow.py.txt
- http://secunia.com/advisories/41466
- http://securityreason.com/securityalert/8083
- http://www.kb.cert.org/vuls/id/660688
- http://www.securityfocus.com/bid/43289
- http://www.us-cert.gov/control_systems/pdf/ICSA-10-264-01.pdf
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2010-4740