Lucene search

K
cveMitreCVE-2011-1568
HistoryApr 05, 2011 - 3:19 p.m.

CVE-2011-1568

2011-04-0515:19:36
CWE-134
mitre
web.nvd.nist.gov
39
cve-2011-1568
format string vulnerability
shmemmgr9.dll
igssdataserver.exe
denial of service
remote code execution
nvd

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

High

EPSS

0.577

Percentile

97.7%

Format string vulnerability in the logText function in shmemmgr9.dll in IGSSdataServer.exe 9.00.00.11074, and 9.00.00.11063 and earlier, in 7-Technologies Interactive Graphical SCADA System (IGSS) allows remote attackers to cause a denial of service and possibly execute arbitrary code, as demonstrated using the RMS Reports Delete command, related to the logging of messages to GSST.LOG. NOTE: some of these details are obtained from third party information.

Affected configurations

Nvd
Node
7tigss
VendorProductVersionCPE
7tigss*cpe:2.3:a:7t:igss:*:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

High

EPSS

0.577

Percentile

97.7%

Related for CVE-2011-1568