← Back

CVE-2015-0980

nvd nist
Published: Mar 14, 2015Modified: May 6, 2026

JSON object

Loading...
9.0
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:C
Exploitability: 10.0 / Impact: 8.5
Source: NVD

Description

Format string vulnerability in BACnOPCServer.exe in the SOAP web interface in SCADA Engine BACnet OPC Server before 2.1.371.24 allows remote attackers to execute arbitrary code via format string specifiers in a request.

Affected (1)

1 product
Bacnet Opc Server
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.1.359.22

References (2)

Source: ics-cert@hq.dhs.gov
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource

Timeline

No history available yet.