First published: Sun Feb 01 2015(Updated: )
Stack-based buffer overflow in an unspecified DLL file in a DTM development kit in Schneider Electric Unity Pro, SoMachine, SoMove, SoMove Lite, Modbus Communication Library 2.2.6 and earlier, CANopen Communication Library 1.0.2 and earlier, EtherNet/IP Communication Library 1.0.0 and earlier, EM X80 Gateway DTM (MB TCP/SL), Advantys DTM for OTB, Advantys DTM for STB, KINOS DTM, SOLO DTM, and Xantrex DTMs allows remote attackers to execute arbitrary code via unspecified vectors.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider Electric SoMachine | ||
SoMove | ||
SoMove Lite | ||
Unity Pro |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-9200 has a high severity rating due to the potential for remote code execution via a stack-based buffer overflow.
To fix CVE-2014-9200, you should update to the latest versions of Schneider Electric Unity Pro, SoMachine, SoMove, and associated libraries.
CVE-2014-9200 affects Schneider Electric Unity Pro, SoMachine, SoMove, and SoMove Lite, along with specific communication libraries.
CVE-2014-9200 is categorized as a stack-based buffer overflow vulnerability.
Versions earlier than Unity Pro, SoMachine, SoMove Lite 2.2.6, CANopen Communication Library 1.0.2, and EtherNet/IP Communication Library 1.0.0 are vulnerable according to CVE-2014-9200.