CVE-2015-0980

Publication date

2015-03-14 01:00:00

Family

icscert

State

PUBLISHED

Description

Format string vulnerability in BACnOPCServer.exe in the SOAP web interface in SCADA Engine BACnet OPC Server before 2.1.371.24 allows remote attackers to execute arbitrary code via format string specifiers in a request.