RSS   Vulnerabilities for 'Wonderware win-xml exporter'   RSS

2013-04-04
 
CVE-2012-4710

CWE-20
 

 
Invensys Wonderware Win-XML Exporter 1522.148.0.0 allows remote attackers to read arbitrary files, send HTTP requests to intranet servers, or cause a denial of service (CPU and memory consumption) via an XML external entity declaration in conjunction with an entity reference.

 

 >>> Vendor: Invensys 20 Products
Intouch
Wonderware application server
Wonderware archestra configuration access component activex control
Foxboro i/a series batch
Wonderware inbatch
Wonderware information server
Wonderware hmi reports
Archestra application object toolkit
Foxboro control software
Infusion control edition
Infusion foundation edition
Infusion scada
Dasabcip
Daserver runtime components
Dassidirect
Intouch/wonderware application server
Infusion ce/fe/scada
Wonderware historian
Wonderware intouch
Wonderware win-xml exporter


Copyright 2024, cxsecurity.com

 

Back to Top