- EPSS 15.51%
- Veröffentlicht 15.07.2019 21:15:10
- Zuletzt bearbeitet 21.11.2024 04:47:13
A CWE-94: Code Injection vulnerability exists in ProClima (all versions prior to version 8.0.0) which could allow an unauthenticated, remote attacker to execute arbitrary code on the targeted system in all versions of ProClima prior to version 8.0.0.
- EPSS 13.84%
- Veröffentlicht 15.07.2019 21:15:10
- Zuletzt bearbeitet 21.11.2024 04:47:13
A CWE-119: Buffer Errors vulnerability exists in ProClima (all versions prior to version 8.0.0) which allows an unauthenticated, remote attacker to execute arbitrary code on the targeted system in all versions of ProClima prior to version 8.0.0.
CVE-2019-6825
- EPSS 0.49%
- Veröffentlicht 15.07.2019 21:15:10
- Zuletzt bearbeitet 21.11.2024 04:47:13
A CWE-427: Uncontrolled Search Path Element vulnerability exists in ProClima (all versions prior to version 8.0.0) which could allow a malicious DLL file, with the same name of any resident DLLs inside the software installation, to execute arbitrary ...
CVE-2015-8561
- EPSS 4.46%
- Veröffentlicht 15.12.2015 05:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
The F1BookView ActiveX control in F1 Bookview in Schneider Electric ProClima before 6.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted integer value to the (1) AttachToSS, (2) CopyAll,...
CVE-2015-7918
- EPSS 12.86%
- Veröffentlicht 15.12.2015 05:59:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple buffer overflows in the F1BookView ActiveX control in F1 Bookview in Schneider Electric ProClima before 6.2 allow remote attackers to execute arbitrary code via the (1) Attach, (2) DefinedName, (3) DefinedNameLocal, (4) ODBCPrepareEx, (5) Ob...
- EPSS 5.35%
- Veröffentlicht 27.12.2014 15:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
Buffer overflow in an ActiveX control in Atx45.ocx in Schneider Electric ProClima before 6.1.7 allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-8512. NOTE: this may be clarified later...