CVE-2017-14024
published 2017-11-13CVE-2017-14024: A Stack-based Buffer Overflow issue was discovered in Schneider Electric InduSoft Web Studio v8.0 SP2 Patch 1 and prior versions, and InTouch Machine Edition…
critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
A Stack-based Buffer Overflow issue was discovered in Schneider Electric InduSoft Web Studio v8.0 SP2 Patch 1 and prior versions, and InTouch Machine Edition v8.0 SP2 Patch 1 and prior versions. The stack-based buffer overflow vulnerability has been identified, which may allow remote code execution with high privileges.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| schneider-electric | wonderware_indusoft_web_studio | <= 8.0 | — |
| schneider-electric | wonderware_intouch | <= 8.0 | — |