Gesytec Easylon OPC Server before 2.3.44 does not properly validate server handles, which allows remote attackers to execute arbitrary code or cause a denial of service via unspecified network traffic to the OLE for Process Control (OPC) interface, probably related to free operations on arbitrary memory addresses through certain Remove functions, and read and write operations on arbitrary memory addresses through certain Set, Read, and Write functions.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: certcc

Published: 2007-12-17T21:00:00

Updated: 2024-08-07T14:53:55.986Z

Reserved: 2007-08-22T00:00:00

Link: CVE-2007-4473

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2007-12-17T21:46:00.000

Modified: 2024-11-21T00:35:40.873

Link: CVE-2007-4473

cve-icon Redhat

No data.