CVE-2012-3007

N/A Unknown
Published: July 05, 2012 Modified: April 29, 2026
View on NVD

Description

Stack-based buffer overflow in slssvc.exe before 58.x in Invensys Wonderware SuiteLink in the Invensys System Platform software suite, as used in InTouch/Wonderware Application Server IT before 10.5 and WAS before 3.5, DASABCIP before 4.1 SP2, DASSiDirect before 3.0, DAServer Runtime Components before 3.0 SP2, and other products, allows remote attackers to cause a denial of service (daemon crash or hang) via a long Unicode string.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://secunia.com/advisories/49173
Source: ics-cert@hq.dhs.gov
http://www.securityfocus.com/bid/53563
Source: ics-cert@hq.dhs.gov
http://www.us-cert.gov/control_systems/pdf/ICSA-12-171-01.pdf
Source: ics-cert@hq.dhs.gov
US Government Resource
http://secunia.com/advisories/49173
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/53563
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.us-cert.gov/control_systems/pdf/ICSA-12-171-01.pdf
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource

6 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
2.2%
80th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

invensys