CVE-2010-4557

Buffer overflow in the lm_tcp service in Invensys Wonderware InBatch 8.1 and 9.0, as used in Invensys Foxboro I/A Series Batch 8.1 and possibly other products, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted request to port 9001.

Date published : 2010-12-17

http://www.kb.cert.org/vuls/id/647928

http://iom.invensys.com/EN/Pages/IOM_CyberSecurityUpdates.aspx