Stack-based buffer overflow in the C++ sample client in Schneider Electric OPC Factory Server (OFS) TLXCDSUOFS33 - 3.35, TLXCDSTOFS33 - 3.35, TLXCDLUOFS33 - 3.35, TLXCDLTOFS33 - 3.35, and TLXCDLFOFS33 - 3.35 allows local users to gain privileges via vectors involving a malformed configuration file.
References
Configurations
Configuration 1 (hide)
|
History
24 Sep 2025, 22:15
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 6.8
v3 : unknown |
References |
|
|
CWE | CWE-121 |
21 Nov 2024, 02:02
Type | Values Removed | Values Added |
---|---|---|
References | () http://download.schneider-electric.com/files?p_Doc_Ref=SEVD%202014-031-01 - Vendor Advisory | |
References | () http://ics-cert.us-cert.gov/advisories/ICSA-14-058-02 - Third Party Advisory, US Government Resource | |
References | () http://www.securityfocus.com/bid/65871 - |
Information
Published : 2014-02-28 06:18
Updated : 2025-09-24 22:15
NVD link : CVE-2014-0774
Mitre link : CVE-2014-0774
CVE.ORG link : CVE-2014-0774
JSON object : View
Products Affected
schneider-electric
- ofs_test_client_tlxcdlfofs33
- ofs_test_client_tlxcdstofs33
- ofs_test_client_tlxcdsuofs33
- ofs_test_client_tlxcdltofs33
- ofs_test_client_tlxcdluofs33
- opc_factory_server