Release date:
Updated on:
Affected Systems:
Ecava IntegraXor <= 4.1.4380
Description:
--------------------------------------------------------------------------------
Bugtraq id: 64972
Ecava IntegraXor is a tool set for creating and Running Man-machine interfaces for Web-based SCADA systems.
IntegraXor 4.1.4380 and other versions have the buffer overflow vulnerability. Attackers can exploit this vulnerability to load arbitrary Resources in the main folder DLL of the affected application and execute arbitrary code in the context.
<* Source: Luigi Auriemma (aluigi@pivx.com)
Link: http://ics-cert.us-cert.gov/advisories/ICSA-14-016-01
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Ecava
-----
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.ecava.com/index.htm
Http://www.integraxor.com/download/rc.msi? 4.1.4390