Buffer overflow in an ActiveX control in MDraw30.ocx in Schneider Electric ProClima before 6.1.7 allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-8513 and CVE-2014-8514. NOTE: this may be clarified later based on details provided by researchers.
Metrics
Affected Vendors & Products
References
History
Thu, 24 Jul 2025 22:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Title | Schneider Electric ProClima Command Injection | |
Weaknesses | CWE-77 | |
References |
| |
Metrics |
cvssV2_0
|
cvssV2_0
|

Status: PUBLISHED
Assigner: icscert
Published: 2014-12-27T15:00:00
Updated: 2025-07-24T22:39:42.287Z
Reserved: 2014-12-02T00:00:00
Link: CVE-2014-9188

No data.

Status : Deferred
Published: 2014-12-27T15:59:04.887
Modified: 2025-07-24T23:15:24.770
Link: CVE-2014-9188

No data.