A Heap-based Buffer Overflow was found in Emerson OpenEnterprise SCADA Server 2.83 (if Modbus or ROC Interfaces have been installed and are in use) and all versions of OpenEnterprise 3.1 through 3.3.3, where a specially crafted script could execute code on the OpenEnterprise Server.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HEmerson Openenterprise Scada Server
APPEmerson2.8.33.1 – 3.3.3
Related vulnerabilities
RCE z uprawnieniami systemowymi w Emerson OpenEnterprise SCADA Server
Inadequate folder security permissions in Emerson OpenEnterprise versions through 3.3.4 may allow modification...
Inadequate encryption may allow the passwords for Emerson OpenEnterprise versions through 3.3.4 user accounts ...
Niewystarczająca enkrypcja może umożliwić uzyskanie poświadczeń używanych przez Emerson OpenEnterprise w wersj...
Emerson Rosemount GC370XA/GC700XA/GC1500XA — zdalne RCE jako root bez uwierzytelnienia