First published: Fri Dec 02 2011(Updated: )
Buffer overflow in the Steema TeeChart ActiveX control, as used in Schneider Electric Vijeo Historian 4.30 and earlier, CitectHistorian 4.30 and earlier, and CitectSCADAReports 4.10 and earlier, allows remote attackers to execute arbitrary code or cause a denial of service via unspecified vectors.
Credit: cret@cert.org
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider-electric Vijeo Historian | =4.20 | |
Schneider-electric Vijeo Historian | =4.0 | |
Schneider-electric Vijeo Historian | =4.10 | |
Schneider-electric Vijeo Historian | <=4.30 | |
Schneider-electric Citecthistorian | <=4.30 | |
Schneider-electric Citecthistorian | =4.20 | |
Schneider-electric Citectscada Reports | <=4.10 | |
Schneider-electric Citectscada Reports | =4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-4034 is rated as critical due to the potential for remote code execution and denial of service.
To remediate CVE-2011-4034, update the affected software to the latest version provided by Schneider Electric that addresses this vulnerability.
CVE-2011-4034 affects several Schneider Electric products, including Vijeo Historian versions 4.20 and earlier, CitectHistorian versions 4.30 and earlier, and CitectSCADA Reports version 4.10 and earlier.
Yes, CVE-2011-4034 can be exploited remotely, allowing attackers to execute arbitrary code on vulnerable systems.
Exploitation of CVE-2011-4034 can lead to unauthorized access, data compromise, arbitrary code execution, or denial of service.