mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-07-29 05:56:17 +00:00
123 lines
4.0 KiB
JSON
123 lines
4.0 KiB
JSON
{
|
|
"id": "CVE-2012-1801",
|
|
"sourceIdentifier": "cret@cert.org",
|
|
"published": "2012-04-18T10:33:35.417",
|
|
"lastModified": "2017-12-20T02:29:00.770",
|
|
"vulnStatus": "Modified",
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "Multiple stack-based buffer overflows in (1) COM and (2) ActiveX controls in ABB WebWare Server, WebWare SDK, Interlink Module, S4 OPC Server, QuickTeach, RobotStudio S4, and RobotStudio Lite allow remote attackers to execute arbitrary code via crafted input data."
|
|
},
|
|
{
|
|
"lang": "es",
|
|
"value": "M\u00faltiples desbordamientos de b\u00fafer basados ??en la pila en controles (1) COM y (2) ActiveX en ABB WebWare Server SDK WebWare, M\u00f3dulo de Interlink, S4 Servidor OPC, QuickTeach, S4 RobotStudio y RobotStudio Lite permite a atacantes remotos ejecutar c\u00f3digo arbitrario a trav\u00e9s de la entrada modificada."
|
|
}
|
|
],
|
|
"metrics": {
|
|
"cvssMetricV2": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "2.0",
|
|
"vectorString": "AV:A/AC:L/Au:S/C:C/I:C/A:C",
|
|
"accessVector": "ADJACENT_NETWORK",
|
|
"accessComplexity": "LOW",
|
|
"authentication": "SINGLE",
|
|
"confidentialityImpact": "COMPLETE",
|
|
"integrityImpact": "COMPLETE",
|
|
"availabilityImpact": "COMPLETE",
|
|
"baseScore": 7.7
|
|
},
|
|
"baseSeverity": "HIGH",
|
|
"exploitabilityScore": 5.1,
|
|
"impactScore": 10.0,
|
|
"acInsufInfo": false,
|
|
"obtainAllPrivilege": false,
|
|
"obtainUserPrivilege": false,
|
|
"obtainOtherPrivilege": false,
|
|
"userInteractionRequired": false
|
|
}
|
|
]
|
|
},
|
|
"weaknesses": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"description": [
|
|
{
|
|
"lang": "en",
|
|
"value": "CWE-119"
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"configurations": [
|
|
{
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:abb:interlink_module:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E3613C59-4589-43B6-8B92-CD1D99CA5E08"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:abb:quickteach:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "060957B9-B811-45D0-B6C6-AA3ABD8415E1"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:abb:robotstudio_lite:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "DDB58170-F332-442A-8470-523DAEE3C544"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:abb:robotstudio_s4:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "EA154046-8D05-4D9E-A1BF-65E36D9E92C8"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:abb:s4_opc_server:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "4F891948-4044-4D71-97E0-AB6E76830020"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:abb:webware_sdk:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6C6E8AF2-2353-48A7-805A-A11D3D689F44"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:abb:webware_server:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "B02E9A10-D707-44BF-B37E-A457BDF3BB88"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"references": [
|
|
{
|
|
"url": "http://www.securityfocus.com/bid/52888",
|
|
"source": "cret@cert.org"
|
|
},
|
|
{
|
|
"url": "http://www.us-cert.gov/control_systems/pdf/ICSA-12-095-01A.pdf",
|
|
"source": "cret@cert.org",
|
|
"tags": [
|
|
"US Government Resource"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://www05.abb.com/global/scot/scot348.nsf/veritydisplay/35df9dc4a94ae83ac12579ca0043acc1/$file/SI10231A2%20rev%200.pdf",
|
|
"source": "cret@cert.org",
|
|
"tags": [
|
|
"Vendor Advisory"
|
|
]
|
|
}
|
|
]
|
|
} |