Back to Database
Status published
Medium
CVE-2011-4520
Heap-based buffer overflow in an ActiveX component in MICROSYS PROMOTIC...
Vulnerability Description
Heap-based buffer overflow in an ActiveX component in MICROSYS PROMOTIC before 8.1.5 allows remote attackers to cause a denial of service via a crafted web page.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2011-4520
Credits & Attribution
No credits recorded in the NVD database.
References
More from microsys
View All →CVE-2016-0869
Heap-based buffer overflow in MICROSYS PROMOTIC before 8.3.11 allows remote...
Medium
5
CVE-2014-9205
Stack-based buffer overflow in the PmBase64Decode function in an unspecified...
High
7.5
CVE-2011-4874
Use-after-free vulnerability in MICROSYS PROMOTIC before 8.1.7 allows user-assisted remote...
High
7.9
CVE-2011-4519
Stack-based buffer overflow in an ActiveX component in MICROSYS PROMOTIC...
Medium
4.3
CVE-2011-4518
Directory traversal vulnerability in the PmWebDir object in the web...
Medium
5
Affected Vendor
microsys
View all reports →Affected Software
promotic
Vulnerable Versions:
0, 8.0.0, 8.0.1, 8.0.2, 8.0.3, 8.0.4, 8.0.5, 8.0.6, 8.0.7, 8.0.8, 8.0.9, 8.0.10, 8.0.11, 8.0.12, 8.0.13, 8.1.0, 8.1.1, 8.1.2, 8.1.3
Timeline
Official Publish:
May 23rd, 2013
Last Modified:
September 16th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.