Vulnerabilities > ABB

DATE CVE VULNERABILITY TITLE RISK
2014-11-07 CVE-2014-5430 Local Code Execution vulnerability in Multiple ABB Products
Untrusted search path vulnerability in ABB RobotStudio 5.6x before 5.61.02 and Test Signal Viewer 1.5 allows local users to gain privileges via a Trojan horse DLL that is accessed as a result of incorrect DLL configuration by an optional installation program.
local
abb
6.9
2013-08-06 CVE-2013-5021 Path Traversal vulnerability in multiple products
Multiple absolute path traversal vulnerabilities in National Instruments cwui.ocx, as used in National Instruments LabWindows/CVI 2012 SP1 and earlier, National Instruments LabVIEW 2012 SP1 and earlier, the Data Analysis component in ABB DataManager 1 through 6.3.6, and other products allow remote attackers to create and execute arbitrary files via a full pathname in an argument to the ExportStyle method in the (1) CWNumEdit, (2) CWGraph, (3) CWBoolean, (4) CWSlide, or (5) CWKnob ActiveX control, in conjunction with file content in the (a) Caption or (b) FormatString property value.
network
ni abb CWE-22
critical
9.3
2012-04-18 CVE-2012-1801 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in ABB products
Multiple stack-based buffer overflows in (1) COM and (2) ActiveX controls in ABB WebWare Server, WebWare SDK, Interlink Module, S4 OPC Server, QuickTeach, RobotStudio S4, and RobotStudio Lite allow remote attackers to execute arbitrary code via crafted input data.
low complexity
abb CWE-119
7.7
2012-03-09 CVE-2012-0245 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in ABB products
Multiple stack-based buffer overflows in RobNetScanHost.exe in ABB Robot Communications Runtime before 5.14.02, as used in ABB Interlink Module, IRC5 OPC Server, PC SDK, PickMaster 3 and 5, RobView 5, RobotStudio, WebWare SDK, and WebWare Server, allow remote attackers to execute arbitrary code via a crafted (1) 0xA or (2) 0xE Netscan packet.
network
low complexity
abb CWE-119
critical
10.0
2008-09-29 CVE-2008-2474 Buffer Errors vulnerability in ABB Pcu400 4.4/4.5/4.6
Buffer overflow in x87 before 3.5.5 in ABB Process Communication Unit 400 (PCU400) 4.4 through 4.6 allows remote attackers to execute arbitrary code via a crafted packet using the (1) IEC60870-5-101 or (2) IEC60870-5-104 communication protocol to the X87 web interface.
network
low complexity
abb CWE-119
critical
10.0