VendorsMICROSYSpromoticall versions
Vulnerabilities

MICROSYS PROMOTIC

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2011-4874
Use-after-free vulnerability in MICROSYS PROMOTIC before 8.1.7 allows user-assisted remote attackers to execute arbitrary code or cause a denial of service (data corruption and application crash) via a crafted project (aka .pra) file.
Published 2012-04-13 · Modified
7.9EPSS 0.015
CVE-2014-9205
Stack-based buffer overflow in the PmBase64Decode function in an unspecified demonstration application in MICROSYS PROMOTIC stable before 8.2.19 and PROMOTIC development before 8.3.2 allows remote attackers to execute arbitrary code by providing a large amount of data.
Published 2015-03-29 · Modified
7.5EPSS 0.047
CVE-2016-0869
Heap-based buffer overflow in MICROSYS PROMOTIC before 8.3.11 allows remote authenticated users to cause a denial of service via a malformed HTML document.
Published 2016-01-26 · Modified
7.1EPSS 0.010
CVE-2011-4518
Directory traversal vulnerability in the PmWebDir object in the web server in MICROSYS PROMOTIC before 8.1.5 allows remote attackers to read arbitrary files via unspecified vectors.
Published 2013-05-23 · Modified
5.01 PoCEPSS 0.264
CVE-2011-4519
Stack-based buffer overflow in an ActiveX component in MICROSYS PROMOTIC before 8.1.5 allows remote attackers to cause a denial of service via a crafted web page.
Published 2013-05-23 · Modified
4.31 PoCEPSS 0.024
CVE-2011-4520
Heap-based buffer overflow in an ActiveX component in MICROSYS PROMOTIC before 8.1.5 allows remote attackers to cause a denial of service via a crafted web page.
Published 2013-05-23 · Modified
4.31 PoCEPSS 0.024