Vulnerabilities > Schneider Electric > Unity PRO > 6.0

DATE CVE VULNERABILITY TITLE RISK
2017-02-13 CVE-2016-8354 Code Injection vulnerability in Schneider-Electric Unity PRO 11.0/6.0/7.0
An issue was discovered in Schneider Electric Unity PRO prior to V11.1.
network
high complexity
schneider-electric CWE-94
5.1
2014-04-01 CVE-2013-0662 Out-of-bounds Write vulnerability in Schneider-Electric products
Multiple stack-based buffer overflows in ModbusDrv.exe in Schneider Electric Modbus Serial Driver 1.10 through 3.2 allow remote attackers to execute arbitrary code via a large buffer-size value in a Modbus Application Header.
network
schneider-electric CWE-787
critical
9.3
2011-11-04 CVE-2011-3330 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Schneider-Electric products
Buffer overflow in the UnitelWay Windows Device Driver, as used in Schneider Electric Unity Pro 6 and earlier, OPC Factory Server 3.34, Vijeo Citect 7.20 and earlier, Telemecanique Driver Pack 2.6 and earlier, Monitor Pro 7.6 and earlier, and PL7 Pro 4.5 and earlier, allows local users, and possibly remote attackers, to execute arbitrary code via an unspecified system parameter.
local
low complexity
schneider-electric CWE-119
7.2