QID 591137
Date Published: 2022-10-31
QID 591137: Advantech OPC Server Buffer Overflow Vulnerability (ICSA-11-279-01)
Aa buffer overflow vulnerability was discovered that affects multiple Advantech OPC (OLE for Process Control) Server products.
The buffer overflow in the Advantech ADAM OPC Server ActiveX control might allow remote attackers to execute arbitrary code and gain privileges as the currently logged-in user.
An attacker with a low skill level can create a denial of service; however, a more skilled attacker could execute arbitrary code.
Affected Versions:
Advantech ADAM OPC Server Versions prior to V3.01.012
Advantech Modbus RTU OPC Server Versions prior to V3.01.010
Advantech Modbus TCP OPC Server Versions prior to V3.01.010
QID Detection Logic:(Authenticated)
It looks into the windows registry entries HKLM to find the vulnerable versions of the products.
This vulnerability may allow remote code execution and elevated user privileges.
- ICSA-11-279-01 -
www.cisa.gov/uscert/ics/advisories/ICSA-11-279-01
CVEs related to QID 591137
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| ICSA-11-279-01 |
|