CVE-2012-3007: Invensys Dasabcip
Medium severity, CVSS 5.0. EPSS: 2.2% chance of exploitation in the next 30 days.
Stack-based buffer overflow in slssvc.exe before 58.x in Invensys Wonderware SuiteLink in the Invensys System Platform software suite, as used in InTouch/Wonderware Application Server IT before 10.5 and WAS before 3.5, DASABCIP before 4.1 SP2, DASSiDirect before 3.0, DAServer Runtime Components before 3.0 SP2, and other products, allows remote attackers to cause a denial of service (daemon crash or hang) via a long Unicode string.
Affected products
- Invensys Dasabcip: up to and including 4.1; version 4.1 only
- Invensys Daserver Runtime Components: up to and including 3.0; version 3.0 only
- Invensys Dassidirect: up to and including 2.0
- Invensys Intouch/wonderware Application Server: up to and including 10.0
- Invensys Wonderware Application Server: up to and including 3.1; version 3.0 only; version 3.0.200 only; version 3.1 only; version 3.1.201 only
Published 2012-07-05. Last modified 2026-06-16.