QID 590615
Date Published: 2021-12-08
QID 590615: FATEK Automation PLC WinProladder Stack-based Buffer Overflow Vulnerability (ICSA-20-254-02)
AFFECTED PRODUCTS
The following versions of PLC WinProladder are affected:
PLC WinProladder Version 3.28 and prior
QID Detection Logic (Authenticated)
QID checks for the Vulnerable version using windows registry keys
Successful exploitation of this vulnerability could crash the device being accessed; a buffer overflow condition may cause a denial-of-service event and remote code execution.
Solution
Customers are advised to refer to CERT MITIGATIONS section ICSA-20-254-02 for affected packages and patching details.
Vendor References
- ICSA-20-254-02 -
www.us-cert.gov/ics/advisories/ICSA-20-254-02
CVEs related to QID 590615
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| ICSA-20-254-02 |
|