cbcvebase.
CVE-2013-0662
published 2014-04-01

CVE-2013-0662: Multiple stack-based buffer overflows in ModbusDrv.exe in Schneider Electric Modbus Serial Driver 1.10 through 3.2 allow remote attackers to execute arbitrary…

critical9.3CVSS 3.1
AVNACMAuNCCICAC
EXPLOIT
Multiple stack-based buffer overflows in ModbusDrv.exe in Schneider Electric Modbus Serial Driver 1.10 through 3.2 allow remote attackers to execute arbitrary code via a large buffer-size value in a Modbus Application Header.

Affected

21 ranges
VendorProductVersion rangeFixed in
schneider-electricconcept<= 2.6
schneider-electricmodbus_serial_driver
schneider-electricmodbus_serial_driver
schneider-electricmodbus_serial_driver
schneider-electricmodbuscommdtm_sl<= 2.1.2
schneider-electricopc_factory_server<= 3.5.0
schneider-electricopc_factory_server
schneider-electricopc_factory_server
schneider-electricpl7<= 4.5
schneider-electricpowersuite<= 2.6
schneider-electricsft2841<= 14.0
schneider-electricsft2841
schneider-electricsomachine<= 3.1
schneider-electricsomachine
schneider-electricsomachine
schneider-electricsomove<= 1.7
schneider-electrictwidosuite<= 2.31.04
schneider-electricunity_pro<= 7.0
schneider-electricunity_pro
schneider-electricunityloader<= 2.3
schneider_electricsomachine