CVE-2014-8269 describes multiple stack-based buffer overflows in Honeywell OPOS Suite versions prior to 1.13.4.15, specifically within the HWOPOSScale.ocx and HWOPOSSCANNER.ocx components. This vulnerability allows remote attackers to execute arbitrary code by tricking a user into opening a specially crafted file. With a CVSS score of 7.5, it is considered highly severe due to its network-based attack vector, low attack complexity, and potential for complete compromise of confidentiality, integrity, and availability. While the vulnerability has a high FAUCET Risk Score, there is no evidence of active exploitation, and no public exploit code is available in Metasploit or ExploitDB, though it has received some community and media attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 1.13.4.14CPE matchmatch criteria | cpe:2.3:a:honeywell:opos_suite:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.