CVE-2012-0245

UnknownEPSS 8.27%

Last modified

CVE-2012-0245 is a vulnerability of currently unknown severity. Multiple stack-based buffer overflows in RobNetScanHost.exe in ABB Robot Communications Runtime before 5.14.02, as used in ABB Interlink Module, IRC5 OPC Server, PC SDK, PickMaster 3 and 5, RobView 5, RobotStudio, WebWare SDK, and WebWare Server, allow remote attackers to execute arbitrary code via a crafted (1) 0xA or (2) 0xE Netscan packet.. EPSS estimates a 8.27% chance of exploitation in the next 30 days.

Description

Multiple stack-based buffer overflows in RobNetScanHost.exe in ABB Robot Communications Runtime before 5.14.02, as used in ABB Interlink Module, IRC5 OPC Server, PC SDK, PickMaster 3 and 5, RobView 5, RobotStudio, WebWare SDK, and WebWare Server, allow remote attackers to execute arbitrary code via a crafted (1) 0xA or (2) 0xE Netscan packet.

Metrics

EPSS Probability
8.27%

94.2th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
AbbInterlink ModuleAll versions
AbbIrc5 Opc ServerAll versions
AbbPc SdkAll versions
AbbPickmaster 3All versions
AbbPickmaster 5All versions
AbbRobot Communications Runtime<= 5.14.01
AbbRobotstudioAll versions
AbbRobview 5All versions
AbbWebware SdkAll versions
AbbWebware ServerAll versions

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2012-0245?
Multiple stack-based buffer overflows in RobNetScanHost.exe in ABB Robot Communications Runtime before 5.14.02, as used in ABB Interlink Module, IRC5 OPC Server, PC SDK, PickMaster 3 and 5, RobView 5, RobotStudio, WebWare SDK, and WebWare Server, allow remote attackers to execute arbitrary code via a crafted (1) 0xA or (2) 0xE Netscan packet.
How severe is CVE-2012-0245?
Severity scoring for CVE-2012-0245 is pending analysis. The EPSS model estimates a 8.27% probability of exploitation in the next 30 days.
How do I fix CVE-2012-0245?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2012-0245?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST