Wellintech develops a focused suite of industrial control system (ICS) and supervisory control and data acquisition (SCADA) software, including products such as Kingview, KingSCADA, KingHistorian, KingAlarm&Event, and KingGraphic, which are deployed in critical infrastructure environments across manufacturing, utilities, and process automation. The vendor's vulnerability exposure concentrates in memory-safety and access-control weaknesses characteristic of native-code ICS platforms: buffer-boundary violations, path-traversal flaws, sensitive-information disclosure, improper authentication, and code-injection conditions recur across the product line. While the absolute volume is modest relative to broad enterprise software vendors, the prominence of these products in operational technology networks and the recurring code-execution and privilege-escalation potential of the observed weakness classes elevate the practical risk; public exploit code has frequently accompanied disclosures. Defenders operating Wellintech deployments should prioritize patching of authentication and memory-safety flaws and implement network segmentation to limit lateral movement from a compromised ICS node; current exploitation activity and severity counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Wellintech over time
Signals from CVEs in this vendor scope (20 CVEs).
20 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2012-4711HIGH Buffer overflow in kingMess.exe 65.20.2003.10300 in WellinTech KingView 6.52, kingMess.exe 65.20.2003.10400 in KingView 6.53, and kingMess.exe 65.50.2011.18049 in KingView 6.55 all | Feb 15, 2013 | 10.0 | 81 | NO | YES |
CVE-2013-2827HIGH An unspecified ActiveX control in WellinTech KingSCADA before 3.1.2, KingAlarm&Event before 3.1, and KingGraphic before 3.1.2 allows remote attackers to download arbitrary DLL code | Jan 15, 2014 | 7.5 | 64 | NO | YES |
CVE-2011-3142HIGH Stack-based buffer overflow in an ActiveX control in KVWebSvr.dll in WellinTech KingView 6.52 and 6.53 allows remote attackers to execute arbitrary code via a long second argument | Aug 16, 2011 | 10.0 | 60 | NO | YES |
CVE-2011-0406HIGH Heap-based buffer overflow in HistorySvr.exe in WellinTech KingView 6.53 allows remote attackers to execute arbitrary code via a long request to TCP port 777. | Jan 11, 2011 | 10.0 | 52 | NO | YES |
CVE-2012-1831HIGH Heap-based buffer overflow in WellinTech KingView 6.53 allows remote attackers to execute arbitrary code via a crafted packet to TCP port 555. | Jul 5, 2012 | 10.0 | 48 | NO | YES |
CVE-2014-0787HIGH Stack-based buffer overflow in WellinTech KingSCADA before 3.1.2.13 allows remote attackers to execute arbitrary code via a crafted packet. | Apr 12, 2014 | 10.0 | 43 | NO | YES |
CVE-2012-1830HIGH Stack-based buffer overflow in WellinTech KingView 6.53 allows remote attackers to execute arbitrary code via a crafted packet to TCP port 555. | Jul 5, 2012 | 10.0 | 43 | NO | YES |
CVE-2022-43663CRITICAL An integer conversion vulnerability exists in the SORBAx64.dll RecvPacket functionality of WellinTech KingHistorian 35.01.00.05. A specially crafted network packet can lead to a bu | Mar 20, 2023 | 9.8 | 37 | NO | NO |
CVE-2013-6127MEDIUM The SUPERGRIDLib.SuperGrid ActiveX control in SuperGrid.ocx before 65.30.30000.10002 in WellinTech KingView before 6.53 does not properly restrict ReplaceDBFile method calls, which | Oct 25, 2013 | 5.8 | 35 | NO | YES |
CVE-2011-4536HIGH Heap-based buffer overflow in nettransdll.dll in HistorySvr.exe (aka HistoryServer.exe) in WellinTech KingView 6.53 and 65.30.2010.18018 allows remote attackers to execute arbitrar | Dec 27, 2011 | 10.0 | 33 | NO | NO |
Signals from CVEs in this vendor scope (20 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Wellintech.
Media articles that mention a CVE ID that affects a product developed by Wellintech — matched by CVE ID, not by vendor name.