Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Get alerts for future matching vulnerabilitiesLog in to subscribe
I. Basic Information for CVE-2015-1007
Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
A specially crafted configuration file could be used to cause a stack-based buffer overflow condition in the OPCTest.exe, which may allow remote code execution on Opto 22 PAC Project Professional versions prior to R9.4008, PAC Project Basic versions prior to R9.4008, PAC Display Basic versions prior to R9.4g, PAC Display Professional versions prior to R9.4g, OptoOPCServer version R9.4c and prior that were installed by PAC Project installer, versions prior to R9.4008, and OptoDataLink version R9.4d and prior that were installed by PAC Project installer, versions prior to R9.4008. Opto 22 suggests upgrading to the new product version as soon as possible.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
栈缓冲区溢出
Source: NVD (National Vulnerability Database)
Vulnerability Title
多款Opto 22产品缓冲区错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
OPTO 22 PAC Project Basic等都是美国OPTO 22公司的产品。PAC Project Basic和PAC Project Professional都是用于工业自动化的远程监控和数据采集应用。PAC Display Basic和PAC Display Professional都是用于构建人机界面应用程序与SNAP PAC系统进行通信的HMI软件包。 多款Opto 22产品中存在本地基于栈的缓冲区溢出漏洞,该漏洞源于程序没有对用户提交的输入执行正确的边界检查。攻击者可利用该漏洞在受影响
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)
Affected Products
VendorProductAffected VersionsCPESubscribe
Opto 22PAC Project Professional < R9.4008 -
Opto 22PAC Project Basic < R9.4008 -
Opto 22PAC Display Basic < R9.4g -
Opto 22PAC Display Professional < R9.4g -
Opto 22OptoOPCServer R9.4c and prior that were installed by PAC Project installer versions prior to R9.4008 -
Opto 22OptoDataLink R9.4d and prior that were installed by PAC Project installer versions prior to R9.4008 -
II. Public POCs for CVE-2015-1007
#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC
III. Intelligence Information for CVE-2015-1007
Please Login to view more intelligence information
IV. Related Vulnerabilities
V. Comments for CVE-2015-1007

No comments yet


Leave a comment