Unrated severityNVD Advisory· Published Mar 14, 2015· Updated May 6, 2026
CVE-2015-0980
CVE-2015-0980
Description
Format string vulnerability in BACnOPCServer.exe in the SOAP web interface in SCADA Engine BACnet OPC Server before 2.1.371.24 allows remote attackers to execute arbitrary code via format string specifiers in a request.
Affected products
1- cpe:2.3:a:scadaengine:bacnet_opc_server:*:*:*:*:*:*:*:*Range: <=2.1.359.22
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- ics-cert.us-cert.gov/advisories/ICSA-15-069-03nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.