Schneider Electric VAMPSET ASCII Argument Heap Overflow Exploit

The vulnerability in VAMPSET is caused by opening crafted VAMPSET disturbance recording files with log ASCII argument. This produce a heap overflow vulnerability when this info is copied to a fixed sized buffer in the heap.
Exploit type: 
Platform: 
Vulnerabilty ID: 
CVE-2014-8390
Product Version: 
2014_R2
Released Date: 
Monday, March 30, 2015 - 00:00