CVE-2012-1801
Last modified
CVE-2012-1801 is a vulnerability of currently unknown severity. Multiple stack-based buffer overflows in (1) COM and (2) ActiveX controls in ABB WebWare Server, WebWare SDK, Interlink Module, S4 OPC Server, QuickTeach, RobotStudio S4, and RobotStudio Lite allow remote attackers to execute arbitrary code via crafted input data.. EPSS estimates a 1.57% chance of exploitation in the next 30 days.
Description
Multiple stack-based buffer overflows in (1) COM and (2) ActiveX controls in ABB WebWare Server, WebWare SDK, Interlink Module, S4 OPC Server, QuickTeach, RobotStudio S4, and RobotStudio Lite allow remote attackers to execute arbitrary code via crafted input data.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Abb | Interlink Module | All versions |
| Abb | Quickteach | All versions |
| Abb | Robotstudio Lite | All versions |
| Abb | Robotstudio S4 | All versions |
| Abb | S4 Opc Server | All versions |
| Abb | Webware Sdk | All versions |
| Abb | Webware Server | All versions |
References
- http://www.us-cert.gov/control_systems/pdf/ICSA-12-095-01A.pdfUS Government Resource
- http://www.us-cert.gov/control_systems/pdf/ICSA-12-095-01A.pdfUS Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2012-1801?
How severe is CVE-2012-1801?
How do I fix CVE-2012-1801?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2012
- CVE-2012-1795webglimpse.cgi in Webglimpse before 2.20.0 allows remote att…
- CVE-2012-1796Unspecified vulnerability in IBM Tivoli Monitoring Agent (IT…
- CVE-2012-1797IBM DB2 9.5 uses world-writable permissions for nodes.reg, w…
- CVE-2012-1798The TIFFGetEXIFProperties function in coders/tiff.c in Image…6.5
- CVE-2012-1799The web server on the Siemens Scalance S Security Module fir…
- CVE-2012-1800Stack-based buffer overflow in the Profinet DCP protocol imp…
- CVE-2012-1802Buffer overflow in the embedded web server on the Siemens Sc…
- CVE-2012-1803RuggedCom Rugged Operating System (ROS) 3.10.x and earlier h…
- CVE-2012-1804The OPC server in Progea Movicon before 11.3 allows remote a…
- CVE-2012-1805Buffer overflow in the ECOM Ethernet module in Koyo H0-ECOM,…
- CVE-2012-1806The ECOM Ethernet module in Koyo H0-ECOM, H0-ECOM100, H2-ECO…
- CVE-2012-1807Cross-site scripting (XSS) vulnerability in the web server i…
Are you affected by CVE-2012-1801?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
