CVE-2015-8561: Buffer Overflow
The F1BookView ActiveX control in F1 Bookview in Schneider Electric ProClima before 6.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted integer value to the (1) AttachToSS, (2) CopyAll, (3) CopyRange, (4) CopyRangeEx, or (5) SwapTable method, a different vulnerability than CVE-2015-7918.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-8561?
CVE-2015-8561 has a critical severity rating due to its potential to allow remote code execution.
How do I fix CVE-2015-8561?
To fix CVE-2015-8561, upgrade Schneider Electric ProClima to version 6.2 or later.
What types of attacks can exploit CVE-2015-8561?
CVE-2015-8561 can be exploited to execute arbitrary code or cause denial of service through memory corruption.
Which versions of Schneider Electric ProClima are affected by CVE-2015-8561?
Versions of Schneider Electric ProClima prior to 6.2 are affected by CVE-2015-8561.
Who is affected by CVE-2015-8561?
Organizations using Schneider Electric ProClima before version 6.2 are at risk of exploitation through CVE-2015-8561.