CVE-2012-0245
Last modified
CVE-2012-0245 is a vulnerability of currently unknown severity. Multiple stack-based buffer overflows in RobNetScanHost.exe in ABB Robot Communications Runtime before 5.14.02, as used in ABB Interlink Module, IRC5 OPC Server, PC SDK, PickMaster 3 and 5, RobView 5, RobotStudio, WebWare SDK, and WebWare Server, allow remote attackers to execute arbitrary code via a crafted (1) 0xA or (2) 0xE Netscan packet.. EPSS estimates a 8.27% chance of exploitation in the next 30 days.
Description
Multiple stack-based buffer overflows in RobNetScanHost.exe in ABB Robot Communications Runtime before 5.14.02, as used in ABB Interlink Module, IRC5 OPC Server, PC SDK, PickMaster 3 and 5, RobView 5, RobotStudio, WebWare SDK, and WebWare Server, allow remote attackers to execute arbitrary code via a crafted (1) 0xA or (2) 0xE Netscan packet.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Abb | Interlink Module | All versions |
| Abb | Irc5 Opc Server | All versions |
| Abb | Pc Sdk | All versions |
| Abb | Pickmaster 3 | All versions |
| Abb | Pickmaster 5 | All versions |
| Abb | Robot Communications Runtime | <= 5.14.01 |
| Abb | Robotstudio | All versions |
| Abb | Robview 5 | All versions |
| Abb | Webware Sdk | All versions |
| Abb | Webware Server | All versions |
References
- http://secunia.com/advisories/48090Vendor Advisory
- http://www.us-cert.gov/control_systems/pdf/ICSA-12-059-01.pdfPatch, US Government Resource
- http://secunia.com/advisories/48090Vendor Advisory
- http://www.us-cert.gov/control_systems/pdf/ICSA-12-059-01.pdfPatch, US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2012-0245?
How severe is CVE-2012-0245?
How do I fix CVE-2012-0245?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2012
- CVE-2012-0239uaddUpAdmin.asp in Advantech/BroadWin WebAccess before 7.0 d…
- CVE-2012-0240GbScriptAddUp.asp in Advantech/BroadWin WebAccess before 7.0…
- CVE-2012-0241Advantech/BroadWin WebAccess before 7.0 allows remote attack…
- CVE-2012-0242Format string vulnerability in Advantech/BroadWin WebAccess …
- CVE-2012-0243Buffer overflow in an ActiveX control in bwocxrun.ocx in Adv…
- CVE-2012-0244Multiple SQL injection vulnerabilities in Advantech/BroadWin…
- CVE-2012-0246Directory traversal vulnerability in an unspecified ActiveX …
- CVE-2012-0247ImageMagick 6.7.5-7 and earlier allows remote attackers to c…8.8
- CVE-2012-0248ImageMagick 6.7.5-7 and earlier allows remote attackers to c…5.5
- CVE-2012-0249Buffer overflow in the ospf_ls_upd_list_lsa function in ospf…
- CVE-2012-0250Buffer overflow in the OSPFv2 implementation in ospfd in Qua…
- CVE-2012-0253Multiple cross-site scripting (XSS) vulnerabilities in Deman…
Are you affected by CVE-2012-0245?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
