TopVuln

High-risk vulnerability digests

CVE-2011-0340

  • CRITICAL

PSIRT-CNA@flexerasoftware.com

Details

CVSS v2
9.3
NVD published
2011-05-04 22:55:01
Affected versions
cpe:2.3:a:advantech:advantech_studio:6.1:sp6_61.6.01.05:*:*:*:*:*:* cpe:2.3:a:indusoft:thin_client:7.0:*:*:*:*:*:*:* cpe:2.3:a:indusoft:web_studio:*:*:*:*:*:*:*:* cpe:2.3:a:indusoft:web_studio:6.1:*:*:*:*:*:*:* cpe:2.3:a:indusoft:web_studio:6.1:sp6:*:*:*:*:*:*
Summary
Multiple buffer overflows in the ISSymbol ActiveX control in ISSymbol.ocx 61.6.0.0 and 301.1009.2904.0 in the ISSymbol virtual machine, as distributed in Advantech Studio 6.1 SP6 61.6.01.05, InduSoft Web Studio before 7.0+SP1, and InduSoft Thin Client 7.0, allow remote attackers to execute arbitrary code via a long (1) InternationalOrder, (2) InternationalSeparator, or (3) LogFileName property value; or (4) a long bstrFileName argument to the OpenScreen method.
Remediation
Not available in our cache.
Exploit info
Not available in our cache.

View on NVD

TopVuln sends digest emails with high-risk CVE picks across multiple authoritative sources—curated with EPSS and AI. Choose daily per-stream emails and optional weekly or monthly roundups.

Subscribe — free email digest or paid plan

Information is aggregated from multiple authoritative sources for convenience; verify with NVD and vendors before operational decisions.