AutomationDirect C-More EA9
cpe:2.3:h:automationdirect:c-more_ea9-rhi:*:*:*:*:*:*:*, +25 more
- <= 6.78
A stack-based buffer overflow vulnerability allowing remote code execution has been identified in AutomationDirect C-More EA9 programming software, versions through 6.78. The issue arises in the parsing of EAP9 files, where user-supplied data is not properly validated before being copied to a fixed-length stack-based buffer. Exploitation of this vulnerability requires user interaction, such as visiting a malicious page or opening a harmful file.
Exploitation of this vulnerability leads to memory corruption, allowing remote code execution on the affected system.
Users are advised to update C-More EA9 HMI to version 6.79. If an immediate update is not possible, AutomationDirect recommends isolating the engineering workstation from external networks, controlling access to the workstation, implementing application whitelisting, applying endpoint security measures, monitoring and logging activity, hardening the workstation, using secure backup and recovery practices, and conducting regular risk assessments.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.