CVE-2008-2474: Buffer Overflow
Published Sep 29, 2008
·Updated
Buffer overflow in x87 before 3.5.5 in ABB Process Communication Unit 400 (PCU400) 4.4 through 4.6 allows remote attackers to execute arbitrary code via a crafted packet using the (1) IEC60870-5-101 or (2) IEC60870-5-104 communication protocol to the X87 web interface.
Affected Software
3 affected components
ABB PCU400=4.6
ABB PCU400=4.5
ABB PCU400=4.4
Event History
Sep 29, 2008
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-2474?
CVE-2008-2474 is considered critical due to the potential for remote code execution.
2
How do I fix CVE-2008-2474?
To fix CVE-2008-2474, it is recommended to upgrade the ABB Process Communication Unit 400 to version 4.7 or later.
3
What are the affected versions in CVE-2008-2474?
CVE-2008-2474 affects ABB Process Communication Unit 400 versions 4.4, 4.5, and 4.6.
4
What types of attacks are possible with CVE-2008-2474?
CVE-2008-2474 allows attackers to execute arbitrary code on the device via crafted packets.
5
What protocols are involved in CVE-2008-2474?
CVE-2008-2474 involves the IEC60870-5-101 and IEC60870-5-104 communication protocols.