RULE(RULE ID:316622)

Rule General Information
Release Date: 2016-06-03
Rule Name: PROTOCOL-SCADA Advantech Webaccess Webvrpcs Service Strncpy Buffer Overflow Vulnerability -3 (CVE-2016-0856)
Severity:
CVE ID:
Rule Protection Details
Description: Multiple stack-based buffer overflows in Advantech WebAccess before 8.1 allow remote attackers to execute arbitrary code via unspecified vectors.
Impact: A buffer overflow vulnerability can be triggered by an attacker in the context of the vulnerable product. Further attacks include arbitrary code execution and denial of service.
Affected OS: Windows
Reference: ZeroDayInitiative:ZDI-16-100
ZeroDayInitiative:ZDI-16-101
ZeroDayInitiative:ZDI-16-102
Solutions
Upgrade to version 8.1 to solve the problem.