
CVE-2012-0254
https://notcve.org/view.php?id=CVE-2012-0254
08 Sep 2012 — Stack-based buffer overflow in the HMIWeb Browser HSCDSPRenderDLL ActiveX control in Honeywell Process Solutions (HPS) Experion R2xx, R30x, R31x, and R400.x; Honeywell Building Solutions (HBS) Enterprise Building Manager R400 and R410.1; and Honeywell Environmental Combustion and Controls (ECC) SymmetrE R410.1 allows remote attackers to execute arbitrary code via unspecified vectors. Desbordamiento de búfer en el control ActiveX HMIWeb Browser HSCDSPRenderDLL en Honeywell Process Solutions (HPS) Experion R2... • http://www.us-cert.gov/control_systems/pdf/ICSA-12-150-01.pdf • CWE-787: Out-of-bounds Write •

CVE-2011-0331
https://notcve.org/view.php?id=CVE-2011-0331
22 Mar 2011 — Use-after-free vulnerability in the addOSPLext method in the Honeywell ScanServer ActiveX control 780.0.20.5 allows remote attackers to execute arbitrary code via a crafted HTML document. Vulnerabilidad de usar después de liberar en el método addOSPLext del control ActiveX Honeywell ScanServer 780.0.20.5. Permite a atacantes remotos ejecutar código arbitrario a través de un documento HTML modificado. • http://osvdb.org/71249 • CWE-399: Resource Management Errors •

CVE-2007-2938 – Microsoft Internet Explorer 6 / Ademco co. ltd. ATNBaseLoader100 Module - Remote Buffer Overflow
https://notcve.org/view.php?id=CVE-2007-2938
31 May 2007 — Buffer overflow in the BaseRunner ActiveX control in the Ademco ATNBaseLoader100 Module (ATNBaseLoader100.dll) 5.4.0.6, when Internet Explorer 6 is used, allows remote attackers to execute arbitrary code via a long argument to the (1) Send485CMD method, and possibly the (2) SetLoginID, (3) AddSite, (4) SetScreen, and (5) SetVideoServer methods. Desbordamiento de búfer en el controlado ActiveX BaseRunner en el módulo Ademco ATNBaseLoader100 (ATNBaseLoader100.dll) 5.4.0.6, cuando se está utilizando Internet E... • https://www.exploit-db.com/exploits/3993 •