CVE-2011-3321 describes a heap-based buffer overflow in the Siemens WinCC Runtime Advanced Loader, impacting SIMATIC WinCC flexible Runtime and SIMATIC WinCC (TIA Portal) Runtime Advanced. This vulnerability has a critical CVSS score of 9.3, indicating a high potential for remote attackers to cause denial of service through memory corruption or even execute arbitrary code via crafted packets to TCP port 2308. Despite its severity, there is no evidence of active exploitation, no known public exploit code (Metasploit, Nuclei, ExploitDB), and minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:a:siemens:simatic_wincc_flexible_runtime:*:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:siemens:simatic_wincc_runtime:-:*:*:*:advanced:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:C/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.