CVE Database
/

CVE-2015-1007

Back to search

CVE-2015-1007

Published: Mar 25, 2019

Modified: Aug 6, 2024

PUBLISHED

Description

A specially crafted configuration file could be used to cause a stack-based buffer overflow condition in the OPCTest.exe, which may allow remote code execution on Opto 22 PAC Project Professional versions prior to R9.4008, PAC Project Basic versions prior to R9.4008, PAC Display Basic versions prior to R9.4g, PAC Display Professional versions prior to R9.4g, OptoOPCServer version R9.4c and prior that were installed by PAC Project installer, versions prior to R9.4008, and OptoDataLink version R9.4d and prior that were installed by PAC Project installer, versions prior to R9.4008. Opto 22 suggests upgrading to the new product version as soon as possible.

VendorProductVersions

Opto 22

PAC Project Professional

affected
< R9.4008

Opto 22

PAC Project Basic

affected
< R9.4008

Opto 22

PAC Display Basic

affected
< R9.4g

Opto 22

PAC Display Professional

affected
< R9.4g

Opto 22

OptoOPCServer

affected
R9.4c and prior that were installed by PAC Project installer versions prior to R9.4008

Opto 22

OptoDataLink

affected
R9.4d and prior that were installed by PAC Project installer versions prior to R9.4008

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now