CVE-2012-0254
Published Sep 8, 2012
Last updated 3 years ago
Overview
- Description
- Stack-based buffer overflow in the HMIWeb Browser HSCDSPRenderDLL ActiveX control in Honeywell Process Solutions (HPS) Experion R2xx, R30x, R31x, and R400.x; Honeywell Building Solutions (HBS) Enterprise Building Manager R400 and R410.1; and Honeywell Environmental Combustion and Controls (ECC) SymmetrE R410.1 allows remote attackers to execute arbitrary code via unspecified vectors.
- Source
- cret@cert.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-787
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:honeywell:enterprise_building_manager:r400:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A32232BC-3D81-41AB-BF19-B2305E3750D1" }, { "criteria": "cpe:2.3:a:honeywell:enterprise_building_manager:r410.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3A1AEB6F-CDEE-448D-AB57-E479B12E0ABB" }, { "criteria": "cpe:2.3:a:honeywell:experion:r200:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "17667B2A-3A9B-4045-B393-4770889B43C3" }, { "criteria": "cpe:2.3:a:honeywell:experion:r300:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7F1F6FF0-8195-4B3C-9376-197F6E114F1B" }, { "criteria": "cpe:2.3:a:honeywell:experion:r310:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B22DEAFD-AD38-449A-BA19-4B71D481C635" }, { "criteria": "cpe:2.3:a:honeywell:experion:r400.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "57EEB7F4-4E1F-46BD-8650-6F1AA1BD5D2D" }, { "criteria": "cpe:2.3:a:honeywell:symmetre:r410.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "157923CF-52A2-4F5E-B5DA-26E875CBA4B8" } ], "operator": "OR" } ] } ]