Vulnerabilities > Microsys > Promotic
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2016-01-26 | CVE-2016-0869 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsys Promotic 8.0.10/8.3.10 Heap-based buffer overflow in MICROSYS PROMOTIC before 8.3.11 allows remote authenticated users to cause a denial of service via a malformed HTML document. | 7.1 |
2015-03-29 | CVE-2014-9205 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsys Promotic Stack-based buffer overflow in the PmBase64Decode function in an unspecified demonstration application in MICROSYS PROMOTIC stable before 8.2.19 and PROMOTIC development before 8.3.2 allows remote attackers to execute arbitrary code by providing a large amount of data. | 7.5 |
2013-05-23 | CVE-2011-4520 | Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Microsys Promotic Heap-based buffer overflow in an ActiveX component in MICROSYS PROMOTIC before 8.1.5 allows remote attackers to cause a denial of service via a crafted web page. | 4.3 |
2013-05-23 | CVE-2011-4519 | Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Microsys Promotic Stack-based buffer overflow in an ActiveX component in MICROSYS PROMOTIC before 8.1.5 allows remote attackers to cause a denial of service via a crafted web page. | 4.3 |
2013-05-23 | CVE-2011-4518 | Path Traversal vulnerability in Microsys Promotic Directory traversal vulnerability in the PmWebDir object in the web server in MICROSYS PROMOTIC before 8.1.5 allows remote attackers to read arbitrary files via unspecified vectors. | 5.0 |
2012-04-13 | CVE-2011-4874 | Resource Management Errors vulnerability in Microsys Promotic Use-after-free vulnerability in MICROSYS PROMOTIC before 8.1.7 allows user-assisted remote attackers to execute arbitrary code or cause a denial of service (data corruption and application crash) via a crafted project (aka .pra) file. | 7.9 |