cpe:/a:progea:movicon_powerhmi:11 cpe:/a:progea:movicon_powerhmi:11.0.1017 cpe:/a:progea:movicon_powerhmi:11.2.1085 CVE-2011-3491 2011-09-16T10:28:13.043-04:00 2017-08-28T21:30:12.803-04:00 10.0 NETWORK LOW NONE COMPLETE COMPLETE COMPLETE http://nvd.nist.gov 2011-09-16T12:10:00.000-04:00 OSVDB 75494 MISC http://aluigi.altervista.org/adv/movicon_1-adv.txt MISC http://www.us-cert.gov/control_systems/pdf/ICS-ALERT-11-256-01.pdf XF movicon-contentlength-bo(69787) Heap-based buffer overflow in Progea Movicon / PowerHMI 11.2.1085 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a negative Content-Length field.