First published: Sat Dec 27 2014(Updated: )
Buffer overflow in an ActiveX control in Atx45.ocx in Schneider Electric ProClima before 6.1.7 allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-8512. NOTE: this may be clarified later based on details provided by researchers.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider Electric ProClima | <=6.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-8511 is classified as a high severity vulnerability due to its potential to allow remote attackers to execute arbitrary code.
To remediate CVE-2014-8511, you should update Schneider Electric ProClima to version 6.1.7 or later.
CVE-2014-8511 is a buffer overflow vulnerability that affects an ActiveX control within Schneider Electric ProClima.
Versions of Schneider Electric ProClima prior to 6.1.7, including all versions up to and including 6.0.1, are affected by CVE-2014-8511.
Yes, CVE-2014-8511 can be exploited remotely, allowing attackers to execute arbitrary code on the affected system.