Vulnerability Details CVE-2011-3330
Buffer overflow in the UnitelWay Windows Device Driver, as used in Schneider Electric Unity Pro 6 and earlier, OPC Factory Server 3.34, Vijeo Citect 7.20 and earlier, Telemecanique Driver Pack 2.6 and earlier, Monitor Pro 7.6 and earlier, and PL7 Pro 4.5 and earlier, allows local users, and possibly remote attackers, to execute arbitrary code via an unspecified system parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.011
EPSS Ranking 77.1%
CVSS Severity
CVSS v2 Score 7.2
Products affected by CVE-2011-3330
-
cpe:2.3:a:schneider-electric:monitor_pro:*
-
cpe:2.3:a:schneider-electric:opc_factory_server:3.34
-
cpe:2.3:a:schneider-electric:opc_factory_server:3.5
-
cpe:2.3:a:schneider-electric:opc_factory_server:3.5.0
-
cpe:2.3:a:schneider-electric:pl7_pro:*
-
cpe:2.3:a:schneider-electric:telemecanique_driver_pack:*
-
cpe:2.3:a:schneider-electric:unity_pro:6.0
-
cpe:2.3:a:schneider-electric:vijeo_citect:7.10
-
cpe:2.3:a:schneider-electric:vijeo_citect:7.20