CVE-2014-0789 - CVE House
Back to Database
Status published Medium CVE-2014-0789

Schneider Electric OPC Factory Server Buffer Overflow

Vulnerability Description

Multiple buffer overflows in the OPC Automation 2.0 Server Object ActiveX control in Schneider Electric OPC Factory Server (OFS) TLXCDSUOFS33 3.5 and earlier, TLXCDSTOFS33 3.5 and earlier, TLXCDLUOFS33 3.5 and earlier, TLXCDLTOFS33 3.5 and earlier, and TLXCDLFOFS33 3.5 and earlier allow remote attackers to cause a denial of service via long arguments to unspecified functions.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2014-0789

Credits & Attribution

The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:

  • Wei Gao, formerly of IXIA

Affected Vendor

Schneider Electric

View all reports →

Affected Software

OPC Factory Server (OFS)
Vulnerable Versions:
0

Timeline

Official Publish: April 4th, 2014
Last Modified: September 25th, 2025
Added to House: July 19th, 2026

CVSS Vectors

Weaknesses (CWE)