CVE-2016-4509: Eaton Elcsoft

Medium severity, CVSS 6.0. EPSS: 2% chance of exploitation in the next 30 days.

Heap-based buffer overflow in elcsoft.exe in Eaton ELCSoft 2.4.01 and earlier allows remote authenticated users to execute arbitrary code via a crafted file.

Affected products

  • Eaton Elcsoft: up to and including 2.4.01

Published 2016-07-03. Last modified 2026-06-17.