Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In Emerson Ovation OCR400 Controller 3.3.1 and earlier, a stack-based buffer overflow vulnerability in the embedded third-party FTP server involves improper handling of a long file name from the LIST command to the FTP service, which may cause the service to overwrite buffers, leading to remote code execution and escalation of privileges.
CVSS Information
N/A
Vulnerability Type
栈缓冲区溢出
Vulnerability Title
Emerson Electric Ovation OCR400 Controller 缓冲区错误漏洞
Vulnerability Description
Emerson Electric Ovation OCR400 Controller是美国艾默生电气(Emerson Electric)公司的一款逻辑控制器。 Emerson Electric Ovation OCR400 Controller 3.3.1及之前版本中嵌入的第三方FTP服务器存在基于栈的缓冲区溢出漏洞。该漏洞源于网络系统或产品在内存上执行操作时,未正确验证数据边界,导致向关联的其他内存位置上执行了错误的读写操作。攻击者可利用该漏洞导致缓冲区溢出或堆溢出等。
CVSS Information
N/A
Vulnerability Type
N/A