« Volver al listado

CVE-2012-0245

Estado: ModificadaAlta (10)—

Multiple stack-based buffer overflows in RobNetScanHost.exe in ABB Robot Communications Runtime before 5.14.02, as used in ABB Interlink Module, IRC5 OPC Server, PC SDK, PickMaster 3 and 5, RobView 5, RobotStudio, WebWare SDK, and WebWare Server, allow remote attackers to execute arbitrary code via a crafted (1) 0xA or (2) 0xE Netscan packet.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (10)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2012-0245",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 10,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "authentication": "NONE",
          "integrityImpact": "COMPLETE",
          "accessComplexity": "LOW",
          "availabilityImpact": "COMPLETE",
          "confidentialityImpact": "COMPLETE"
        },
        "acInsufInfo": false,
        "impactScore": 10,
        "baseSeverity": "HIGH",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "cret@cert.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2012-03-09T11:55:00.927",
  "references": [
    {
      "url": "http://archives.neohapsis.com/archives/bugtraq/2012-02/0125.html",
      "source": "cret@cert.org"
    },
    {
      "url": "http://secunia.com/advisories/48090",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "cret@cert.org"
    },
    {
      "url": "http://www.securityfocus.com/bid/52123",
      "source": "cret@cert.org"
    },
    {
      "url": "http://www.us-cert.gov/control_systems/pdf/ICSA-12-059-01.pdf",
      "tags": [
        "Patch",
        "US Government Resource"
      ],
      "source": "cret@cert.org"
    },
    {
      "url": "http://www.zerodayinitiative.com/advisories/ZDI-12-033/",
      "source": "cret@cert.org"
    },
    {
      "url": "http://www05.abb.com/global/scot/scot348.nsf/veritydisplay/f261be074480dc24c12579a00049ecd5/%24file/si10227a1%20vulnerability%20security%20advisory.pdf",
      "source": "cret@cert.org"
    },
    {
      "url": "http://archives.neohapsis.com/archives/bugtraq/2012-02/0125.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://secunia.com/advisories/48090",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/52123",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.us-cert.gov/control_systems/pdf/ICSA-12-059-01.pdf",
      "tags": [
        "Patch",
        "US Government Resource"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.zerodayinitiative.com/advisories/ZDI-12-033/",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www05.abb.com/global/scot/scot348.nsf/veritydisplay/f261be074480dc24c12579a00049ecd5/%24file/si10227a1%20vulnerability%20security%20advisory.pdf",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-119"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Multiple stack-based buffer overflows in RobNetScanHost.exe in ABB Robot Communications Runtime before 5.14.02, as used in ABB Interlink Module, IRC5 OPC Server, PC SDK, PickMaster 3 and 5, RobView 5, RobotStudio, WebWare SDK, and WebWare Server, allow remote attackers to execute arbitrary code via a crafted (1) 0xA or (2) 0xE Netscan packet."
    },
    {
      "lang": "es",
      "value": "Múltiples vulnerabilidades de desbordamiento de búfer basados ??en pila en RobNetScanHost.exe en ABB Robot Comunications Runtime antes de v5.14.02, tal y como se utiliza en el módulo ABB Interlink, IRC5 OPC Server, PC SDK, PickMaster v3 y v5, RobView v5, RobotStudio, WebWare SDK, y WebWare Server, permiten a atacantes remotos ejecutar código de su elección a través de un paquete Netscan (1) 0xA o (2) 0xE específicamente modificado para este fin."
    }
  ],
  "lastModified": "2026-06-16T23:36:58.703",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:abb:interlink_module:-:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "E3613C59-4589-43B6-8B92-CD1D99CA5E08"
            },
            {
              "criteria": "cpe:2.3:a:abb:irc5_opc_server:-:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "5AF05829-0C61-4251-8076-E83AFB6E7238"
            },
            {
              "criteria": "cpe:2.3:a:abb:pc_sdk:-:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "AB84B0CA-7616-416A-9E19-D17AC0D3C2E4"
            },
            {
              "criteria": "cpe:2.3:a:abb:pickmaster_3:-:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "0A21E8F2-3019-4D63-B4C7-E05E1C530A9F"
            },
            {
              "criteria": "cpe:2.3:a:abb:pickmaster_5:-:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "10859C85-C56D-4653-B59D-2668841D1B45"
            },
            {
              "criteria": "cpe:2.3:a:abb:robot_communications_runtime:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "8F1151B6-1616-4E6D-80C0-A661A17DBDA2",
              "versionEndIncluding": "5.14.01"
            },
            {
              "criteria": "cpe:2.3:a:abb:robotstudio:-:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "9CBB66AE-21D3-43DF-92F5-55ADD5DD41AD"
            },
            {
              "criteria": "cpe:2.3:a:abb:robview_5:-:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "3136EC2C-89B2-4075-A086-0315E202B1A7"
            },
            {
              "criteria": "cpe:2.3:a:abb:webware_sdk:-:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "6C6E8AF2-2353-48A7-805A-A11D3D689F44"
            },
            {
              "criteria": "cpe:2.3:a:abb:webware_server:-:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "B02E9A10-D707-44BF-B37E-A457BDF3BB88"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "cret@cert.org"
}