CVE Vulnerabilities

CVE-2011-5088

Published: Apr 18, 2012 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The GENESIS32 IcoSetServer ActiveX control in ICONICS GENESIS32 9.21 and BizViz 9.21 configures the trusted zone on the basis of user input, which allows remote attackers to execute arbitrary code via a crafted web site, related to a Workbench32/WebHMI component SetTrustedZone Policy vulnerability.

Affected Software

NameVendorStart VersionEnd Version
BizvizIconics9.21 (including)9.21 (including)
Genesis32Iconics9.21 (including)9.21 (including)

References