← back
CVE-2014-0782CWE-121

Yokogawa CENTUM CS 3000 Stack-based Buffer Overflow

68Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendcvss 8.3epss 57%
from disclosure to weapon0 days
Published on NVDMay 16
1st PoCMay 12
metasploitMar 10
exploitation probability
57%top 1% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Stack-based buffer overflow in BKESimmgr.exe in the Expanded Test Functions package in Yokogawa CENTUM CS 1000, CENTUM CS 3000 Entry Class R3.09.50 and earlier, CENTUM VP R5.03.00 and earlier, CENTUM VP Entry Class R5.03.00 and earlier, Exaopc R3.71.02 and earlier, B/M9000CS R5.05.01 and earlier, and B/M9000 VP R7.03.01 and earlier allows remote attackers to execute arbitrary code via a crafted packet.
AV:N/AC:M/Au:N/C:P/I:P/A:C
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.