First published: Wed Sep 30 2020(Updated: )
In PLC WinProladder Version 3.28 and prior, a stack-based buffer overflow vulnerability can be exploited when a valid user opens a specially crafted file, which may allow an attacker to remotely execute arbitrary code.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
FATEK WinProladder | <=3.28 | |
FATEK Automation PLC WinProladder Version 3.28 and prior |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-16234 is a stack-based buffer overflow vulnerability in PLC WinProladder Version 3.28 and prior.
CVE-2020-16234 allows a valid user to execute arbitrary code remotely when opening a specially crafted file in PLC WinProladder Version 3.28 and prior.
CVE-2020-16234 has a severity level of 7.8 (high).
CVE-2020-16234 can be exploited by an attacker when a valid user opens a specially crafted file in PLC WinProladder Version 3.28 and prior.
At this time, there is no information available about a fix for CVE-2020-16234. It is recommended to follow the provided references for updates and patches.