CVE-2014-3888 Information
Feb 14, 2021
cve
Description
Stack-based buffer overflow in BKFSim_vhfd.exe in Yokogawa CENTUM CS 1000 CENTUM CS 3000 R3.09.50 and earlier CENTUM VP R5.03.20 and earlier Exaopc R3.72.00 and earlier B/M9000CS R5.05.01 and earlier and B/M9000 VP R7.03.01 and earlier when FCS/Test Function is enabled allows remote attackers to execute arbitrary code via a crafted packet.
Reference
http://ics-cert.us-cert.gov/advisories/ICSA-14-189-01 http://osvdb.org/show/osvdb/108756 http://packetstormsecurity.com/files/127382/Yokogawa-CS3000-BKFSim_vhfd.exe-Buffer-Overflow.html http://www.exploit-db.com/exploits/34009 http://www.yokogawa.com/dcs/security/ysar/YSAR-14-0002E.pdf
Share on: