Lucene search

K
cveCertccCVE-2007-1319
HistoryMar 19, 2007 - 10:19 p.m.

CVE-2007-1319

2007-03-1922:19:00
certcc
web.nvd.nist.gov
18
cve-2007-1319
iopcserver
removegroup
opcda
takebishi electric
devicexplorer
ole
process control
opc server
arbitrary code
remote attack
memory access
hidic
melsec
fa-m3
modbus
sysmac

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.5

Confidence

Low

EPSS

0.463

Percentile

97.4%

Unspecified vulnerability in the IOPCServer::RemoveGroup function in the OPCDA interface in Takebishi Electric DeviceXPlorer OLE for Process Control (OPC) Server before 3.12 Build3 allows remote attackers to execute arbitrary code via unspecified vectors involving access to arbitrary memory. NOTE: this issue affects the (1) HIDIC, (2) MELSEC, (3) FA-M3, (4) MODBUS, and (5) SYSMAC OPC Servers.

Affected configurations

Nvd
Node
takebishi_corporationdevicexplorer_opc_serverRange3.12_build2
OR
takebishi_corporationdevicexplorer_opc_serverMatch3.12_build1
VendorProductVersionCPE
takebishi_corporationdevicexplorer_opc_server*cpe:2.3:a:takebishi_corporation:devicexplorer_opc_server:*:*:*:*:*:*:*:*
takebishi_corporationdevicexplorer_opc_server3.12_build1cpe:2.3:a:takebishi_corporation:devicexplorer_opc_server:3.12_build1:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.5

Confidence

Low

EPSS

0.463

Percentile

97.4%

Related for CVE-2007-1319