CVE-2012-4354
Winlog Pro and Winlog Lite < 2.07.17 - Remote Code Execution via Crafted TCP Packet
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2012-4354.
AI-analyzed exploit summary This is a detailed technical analysis of multiple vulnerabilities in Sielco Sistemi Winlog SCADA software, including code execution, stack overflow, directory traversal, and memory corruption issues. The writeup provides disassembly snippets, exploitation details, and proof-of-concept commands using a custom tool (udpsz).
Description
TCPIPS_Story.dll in Sielco Sistemi Winlog Pro SCADA before 2.07.17 and Winlog Lite SCADA before 2.07.17 allows remote attackers to execute arbitrary code via a port-46824 TCP packet with a crafted positive integer after the opcode, triggering incorrect function-pointer processing that can lead to a buffer overflow. NOTE: some of these details are obtained from third party information.
Exploits (1)
This is a detailed technical analysis of multiple vulnerabilities in Sielco Sistemi Winlog SCADA software, including code execution, stack overflow, directory traversal, and memory corruption issues. The writeup provides disassembly snippets, exploitation details, and proof-of-concept commands using a custom tool (udpsz).