Remote Attack Could Lead to Full Device Access
CVE-2015-10123
8.8HIGH
What is CVE-2015-10123?
An unauthorized remote attacker can exploit a buffer overflow vulnerability by sending specially crafted packets to vulnerable devices. If an authenticated user accesses a specific page within the web-based management interface, this could trigger the overflow, potentially allowing the attacker to gain full control over the affected system. This vulnerability highlights the importance of ensuring secure protocols and regular updates to safeguard against such unauthorized access risks.
Affected Version(s)
Controller BACnet MS/TP 0
Controller BACnet/IP 0
Ethernet Controller 3rd Generation 0