← back
CVE-2014-5407

Schneider Electric VAMPSET Stack-based Buffer Overflow

CVSS 4.1 EPSS 0.4%CWE-121
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 4.1EPSS 0.4%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
15 Sep 2014Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Multiple stack-based buffer overflows in Schneider Electric VAMPSET 2.2.136 and earlier allow local users to cause a denial of service (application halt) via a malformed (1) setting file or (2) disturbance recording file.
AV:L/AC:M/Au:S/C:P/I:P/A:P

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →