CVE-2011-4535: Craig Peterson Turbopower Abbrevia

Medium severity, CVSS 6.8. EPSS: 26.7% chance of exploitation in the next 30 days.

Buffer overflow in TurboPower Abbrevia before 4.0, as used in ScadaTEC ScadaPhone 5.3.11.1230 and earlier, ScadaTEC ModbusTagServer 4.1.1.81 and earlier, and other products, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted ZIP file.

Affected products

  • Craig Peterson Turbopower Abbrevia: up to and including 3.05
  • Scadatec Modbustagserver: up to and including 4.1.1.81
  • Scadatec Scadaphone: up to and including 5.3.11.1230

Published 2012-04-03. Last modified 2026-06-16.