{"api_version":"1","generated_at":"2026-07-23T03:37:42+00:00","cve":"CVE-2012-1801","urls":{"html":"https://cve.report/CVE-2012-1801","api":"https://cve.report/api/cve/CVE-2012-1801.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2012-1801","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2012-1801"},"summary":{"title":"CVE-2012-1801","description":"Multiple stack-based buffer overflows in (1) COM and (2) ActiveX controls in ABB WebWare Server, WebWare SDK, Interlink Module, S4 OPC Server, QuickTeach, RobotStudio S4, and RobotStudio Lite allow remote attackers to execute arbitrary code via crafted input data.","state":"PUBLISHED","assigner":"certcc","published_at":"2012-04-18 10:33:35","updated_at":"2026-04-29 01:13:23"},"problem_types":["CWE-119","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"7.7","severity":"","vector":"AV:A/AC:L/Au:S/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:A/AC:L/Au:S/C:C/I:C/A:C","baseScore":7.7,"accessVector":"ADJACENT_NETWORK","accessComplexity":"LOW","authentication":"SINGLE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://www.us-cert.gov/control_systems/pdf/ICSA-12-095-01A.pdf","name":"http://www.us-cert.gov/control_systems/pdf/ICSA-12-095-01A.pdf","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"],"title":"404 - File Not Found | CISA","mime":"application/pdf","httpstatus":"404","archivestatus":"200"},{"url":"http://www05.abb.com/global/scot/scot348.nsf/veritydisplay/35df9dc4a94ae83ac12579ca0043acc1/%24file/SI10231A2%20rev%200.pdf","name":"http://www05.abb.com/global/scot/scot348.nsf/veritydisplay/35df9dc4a94ae83ac12579ca0043acc1/%24file/SI10231A2%20rev%200.pdf","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"404"},{"url":"http://www.securityfocus.com/bid/52888","name":"http://www.securityfocus.com/bid/52888","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Multiple ABB Products ActiveX Control Buffer Overflow Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://secunia.com/advisories/48693","name":"http://secunia.com/advisories/48693","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Security Advisory SA48693 - ABB Multiple Products ActiveX Control Buffer Overflow Vulnerability - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www05.abb.com/global/scot/scot348.nsf/veritydisplay/35df9dc4a94ae83ac12579ca0043acc1/$file/SI10231A2%20rev%200.pdf","name":"CONFIRM:http://www05.abb.com/global/scot/scot348.nsf/veritydisplay/35df9dc4a94ae83ac12579ca0043acc1/$file/SI10231A2%20rev%200.pdf","refsource":"MITRE","tags":[],"title":"Not Found","mime":"text/html","httpstatus":"404","archivestatus":"404"},{"url":"https://www.cve.org/CVERecord?id=CVE-2012-1801","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2012-1801","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2012","cve_id":"1801","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"abb","cpe5":"interlink_module","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2012","cve_id":"1801","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"abb","cpe5":"quickteach","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2012","cve_id":"1801","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"abb","cpe5":"robotstudio_lite","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2012","cve_id":"1801","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"abb","cpe5":"robotstudio_s4","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2012","cve_id":"1801","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"abb","cpe5":"s4_opc_server","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2012","cve_id":"1801","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"abb","cpe5":"webware_sdk","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2012","cve_id":"1801","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"abb","cpe5":"webware_server","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-06T19:08:38.717Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.us-cert.gov/control_systems/pdf/ICSA-12-095-01A.pdf"},{"name":"48693","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/48693"},{"name":"52888","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/52888"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www05.abb.com/global/scot/scot348.nsf/veritydisplay/35df9dc4a94ae83ac12579ca0043acc1/%24file/SI10231A2%20rev%200.pdf"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2012-04-10T00:00:00.000Z","descriptions":[{"lang":"en","value":"Multiple stack-based buffer overflows in (1) COM and (2) ActiveX controls in ABB WebWare Server, WebWare SDK, Interlink Module, S4 OPC Server, QuickTeach, RobotStudio S4, and RobotStudio Lite allow remote attackers to execute arbitrary code via crafted input data."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-12-19T19:57:01.000Z","orgId":"37e5125f-f79b-445b-8fad-9564f167944b","shortName":"certcc"},"references":[{"tags":["x_refsource_MISC"],"url":"http://www.us-cert.gov/control_systems/pdf/ICSA-12-095-01A.pdf"},{"name":"48693","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/48693"},{"name":"52888","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/52888"},{"tags":["x_refsource_CONFIRM"],"url":"http://www05.abb.com/global/scot/scot348.nsf/veritydisplay/35df9dc4a94ae83ac12579ca0043acc1/%24file/SI10231A2%20rev%200.pdf"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cert@cert.org","ID":"CVE-2012-1801","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Multiple stack-based buffer overflows in (1) COM and (2) ActiveX controls in ABB WebWare Server, WebWare SDK, Interlink Module, S4 OPC Server, QuickTeach, RobotStudio S4, and RobotStudio Lite allow remote attackers to execute arbitrary code via crafted input data."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"http://www.us-cert.gov/control_systems/pdf/ICSA-12-095-01A.pdf","refsource":"MISC","url":"http://www.us-cert.gov/control_systems/pdf/ICSA-12-095-01A.pdf"},{"name":"48693","refsource":"SECUNIA","url":"http://secunia.com/advisories/48693"},{"name":"52888","refsource":"BID","url":"http://www.securityfocus.com/bid/52888"},{"name":"http://www05.abb.com/global/scot/scot348.nsf/veritydisplay/35df9dc4a94ae83ac12579ca0043acc1/$file/SI10231A2%20rev%200.pdf","refsource":"CONFIRM","url":"http://www05.abb.com/global/scot/scot348.nsf/veritydisplay/35df9dc4a94ae83ac12579ca0043acc1/$file/SI10231A2%20rev%200.pdf"}]}}}},"cveMetadata":{"assignerOrgId":"37e5125f-f79b-445b-8fad-9564f167944b","assignerShortName":"certcc","cveId":"CVE-2012-1801","datePublished":"2012-04-18T10:00:00.000Z","dateReserved":"2012-03-21T00:00:00.000Z","dateUpdated":"2024-08-06T19:08:38.717Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2012-04-18 10:33:35","lastModifiedDate":"2026-04-29 01:13:23","problem_types":["CWE-119","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:A/AC:L/Au:S/C:C/I:C/A:C","baseScore":7.7,"accessVector":"ADJACENT_NETWORK","accessComplexity":"LOW","authentication":"SINGLE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":5.1,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:abb:interlink_module:-:*:*:*:*:*:*:*","matchCriteriaId":"E3613C59-4589-43B6-8B92-CD1D99CA5E08"},{"vulnerable":true,"criteria":"cpe:2.3:a:abb:quickteach:-:*:*:*:*:*:*:*","matchCriteriaId":"060957B9-B811-45D0-B6C6-AA3ABD8415E1"},{"vulnerable":true,"criteria":"cpe:2.3:a:abb:robotstudio_lite:-:*:*:*:*:*:*:*","matchCriteriaId":"DDB58170-F332-442A-8470-523DAEE3C544"},{"vulnerable":true,"criteria":"cpe:2.3:a:abb:robotstudio_s4:-:*:*:*:*:*:*:*","matchCriteriaId":"EA154046-8D05-4D9E-A1BF-65E36D9E92C8"},{"vulnerable":true,"criteria":"cpe:2.3:a:abb:s4_opc_server:-:*:*:*:*:*:*:*","matchCriteriaId":"4F891948-4044-4D71-97E0-AB6E76830020"},{"vulnerable":true,"criteria":"cpe:2.3:a:abb:webware_sdk:-:*:*:*:*:*:*:*","matchCriteriaId":"6C6E8AF2-2353-48A7-805A-A11D3D689F44"},{"vulnerable":true,"criteria":"cpe:2.3:a:abb:webware_server:-:*:*:*:*:*:*:*","matchCriteriaId":"B02E9A10-D707-44BF-B37E-A457BDF3BB88"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2012","CveId":"1801","Ordinal":"1","Title":"CVE-2012-1801","CVE":"CVE-2012-1801","Year":"2012"},"notes":[{"CveYear":"2012","CveId":"1801","Ordinal":"1","NoteData":"Multiple stack-based buffer overflows in (1) COM and (2) ActiveX controls in ABB WebWare Server, WebWare SDK, Interlink Module, S4 OPC Server, QuickTeach, RobotStudio S4, and RobotStudio Lite allow remote attackers to execute arbitrary code via crafted input data.","Type":"Description","Title":"CVE-2012-1801"},{"CveYear":"2012","CveId":"1801","Ordinal":"2","NoteData":"2012-04-18","Type":"Other","Title":"Published"},{"CveYear":"2012","CveId":"1801","Ordinal":"3","NoteData":"2017-12-19","Type":"Other","Title":"Modified"}]}}}