Vulnerabilities
Vulnerable Software
Emerson:  >> Ovation Ocr400 Firmware  Security Vulnerabilities
In Emerson Ovation OCR400 Controller 3.3.1 and earlier, a heap-based buffer overflow vulnerability in the embedded third-party FTP server involves improper handling of a long command to the FTP service, which may cause memory corruption that halts the controller or leads to remote code execution and escalation of privileges.
CVSS Score
8.8
EPSS Score
0.064
Published
2019-05-28
In Emerson Ovation OCR400 Controller 3.3.1 and earlier, a stack-based buffer overflow vulnerability in the embedded third-party FTP server involves improper handling of a long file name from the LIST command to the FTP service, which may cause the service to overwrite buffers, leading to remote code execution and escalation of privileges.
CVSS Score
8.8
EPSS Score
0.042
Published
2019-05-28


Contact Us

Shodan ® - All rights reserved