CVE-2011-4520

Microsys Promotic < 8.1.4 - Memory Corruption

Title source: rule
STIX 2.1

Description

Heap-based buffer overflow in an ActiveX component in MICROSYS PROMOTIC before 8.1.5 allows remote attackers to cause a denial of service via a crafted web page.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Luigi Auriemma · textdoswindows
https://www.exploit-db.com/exploits/18049

References (2)

Core 2
Core References
Various Sources x_refsource_confirm
http://www.promotic.eu/en/pmdoc/News.htm#ver80105
US Government Resource x_refsource_misc
http://ics-cert.us-cert.gov/advisories/ICSA-12-024-02

Scores

EPSS 0.1234
EPSS Percentile 94.0%

Details

CWE
CWE-119
Status published
Products (19)
microsys/promotic 8.0.0
microsys/promotic 8.0.1
microsys/promotic 8.0.2
microsys/promotic 8.0.3
microsys/promotic 8.0.4
microsys/promotic 8.0.5
microsys/promotic 8.0.6
microsys/promotic 8.0.7
microsys/promotic 8.0.8
microsys/promotic 8.0.9
... and 9 more
Published May 23, 2013
Tracked Since Feb 18, 2026