CVE-2015-7918: Buffer Overflow
Multiple buffer overflows in the F1BookView ActiveX control in F1 Bookview in Schneider Electric ProClima before 6.2 allow remote attackers to execute arbitrary code via the (1) Attach, (2) DefinedName, (3) DefinedNameLocal, (4) ODBCPrepareEx, (5) ObjCreatePolygon, (6) SetTabbedTextEx, or (7) SetValidationRule method, a different vulnerability than CVE-2015-8561.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-7918?
CVE-2015-7918 is considered critical due to multiple buffer overflows that can lead to arbitrary code execution.
How do I fix CVE-2015-7918?
To fix CVE-2015-7918, upgrade Schneider Electric ProClima to version 6.2 or later.
What are the potential impacts of CVE-2015-7918?
The potential impacts of CVE-2015-7918 include remote attackers being able to execute arbitrary code on affected systems.
Which software versions are affected by CVE-2015-7918?
CVE-2015-7918 affects Schneider Electric ProClima version 6.1 and earlier.
Is CVE-2015-7918 exploitable remotely?
Yes, CVE-2015-7918 can be exploited remotely due to vulnerabilities in the F1BookView ActiveX control.