Intrusion Prevention

WECON.LeviStudio.HMI.Editor.Buffer.Overflow

Description

This indicates an attack attempt against a Stack Buffer Overflow vulnerability in WECON LeviStudio HMI Editor.
The vulnerability is due to an error when the vulnerable software handles a crafted UMP file. A remote attacker can trick an unsuspecting user to open a crafted UMP file and exploit this to execute arbitrary code under the security context of the user.

Affected Products

WECON LEVI Studio HMI Editor v1.8.1 and the prior

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Recommended Actions

Apply the most recent upgrades or patches from the vendor.
http://www.we-con.com.cn/en/download/softwares/levi-series-hmi/

CVE References

CVE-2017-13999