CVE-2012-4353

Sielcosistemi Winlog Pro < 2.07.16 - Memory Corruption

Title source: rule

Description

Stack-based buffer overflow in RunTime.exe in Sielco Sistemi Winlog Pro SCADA before 2.07.17 and Winlog Lite SCADA before 2.07.17 allows remote attackers to execute arbitrary code via a crafted port-46824 TCP packet that triggers an incorrect file-open attempt by the _TCPIPS_BinOpenFileFP function, a different vulnerability than CVE-2012-3815. NOTE: some of these details are obtained from third party information.

Exploits (1)

exploitdb WRITEUP
doswindows
https://www.exploit-db.com/exploits/19409

Scores

EPSS 0.1478
EPSS Percentile 94.4%

Classification

CWE
CWE-119
Status draft

Affected Products (50)

sielcosistemi/winlog_pro < 2.07.16
sielcosistemi/winlog_pro
sielcosistemi/winlog_pro
sielcosistemi/winlog_pro
sielcosistemi/winlog_pro
sielcosistemi/winlog_pro
sielcosistemi/winlog_pro
sielcosistemi/winlog_pro
sielcosistemi/winlog_pro
sielcosistemi/winlog_pro
sielcosistemi/winlog_pro
sielcosistemi/winlog_pro
sielcosistemi/winlog_pro
sielcosistemi/winlog_pro
sielcosistemi/winlog_pro
... and 35 more

Timeline

Published Aug 19, 2012
Tracked Since Feb 18, 2026