Lucene search

K
cveMitreCVE-2011-3490
HistorySep 16, 2011 - 2:28 p.m.

CVE-2011-3490

2011-09-1614:28:12
CWE-119
mitre
web.nvd.nist.gov
111
cve-2011-3490
buffer overflow
denial of service
remote attackers
measuresoft scadapro

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8

Confidence

Low

EPSS

0.053

Percentile

93.1%

Multiple stack-based buffer overflows in service.exe in Measuresoft ScadaPro 4.0.0 and earlier allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long command to port 11234, as demonstrated with the TF command.

Affected configurations

Nvd
Node
measuresoftscadaproRange4.0.0
OR
measuresoftscadaproMatch2.1
OR
measuresoftscadaproMatch2.2
OR
measuresoftscadaproMatch2.3
OR
measuresoftscadaproMatch2.4
OR
measuresoftscadaproMatch2.4.1
OR
measuresoftscadaproMatch2.4.2
OR
measuresoftscadaproMatch2.4.3
OR
measuresoftscadaproMatch2.4.4
OR
measuresoftscadaproMatch2.4.5
OR
measuresoftscadaproMatch2.4.6
OR
measuresoftscadaproMatch2.5
OR
measuresoftscadaproMatch2.5.1
OR
measuresoftscadaproMatch2.5.2
OR
measuresoftscadaproMatch2.5.3
OR
measuresoftscadaproMatch2.5.4
OR
measuresoftscadaproMatch2.5.5
OR
measuresoftscadaproMatch2.6.0
OR
measuresoftscadaproMatch2.7.0
OR
measuresoftscadaproMatch2.7.1
OR
measuresoftscadaproMatch2.7.2
OR
measuresoftscadaproMatch2.8.0
OR
measuresoftscadaproMatch2.9.0
OR
measuresoftscadaproMatch3.1.0
OR
measuresoftscadaproMatch3.2.8
OR
measuresoftscadaproMatch3.2.9
OR
measuresoftscadaproMatch3.3.0
OR
measuresoftscadaproMatch3.3.1
OR
measuresoftscadaproMatch3.3.2
OR
measuresoftscadaproMatch3.9.0
OR
measuresoftscadaproMatch3.9.1
OR
measuresoftscadaproMatch3.9.2
OR
measuresoftscadaproMatch3.9.3
OR
measuresoftscadaproMatch3.9.4
OR
measuresoftscadaproMatch3.9.5
OR
measuresoftscadaproMatch3.9.6
OR
measuresoftscadaproMatch3.9.7
OR
measuresoftscadaproMatch3.9.8
OR
measuresoftscadaproMatch3.9.9
OR
measuresoftscadaproMatch3.9.10
OR
measuresoftscadaproMatch3.9.11
OR
measuresoftscadaproMatch3.9.12
OR
measuresoftscadaproMatch3.9.13
OR
measuresoftscadaproMatch3.9.14
OR
measuresoftscadaproMatch3.9.15
VendorProductVersionCPE
measuresoftscadapro*cpe:2.3:a:measuresoft:scadapro:*:*:*:*:*:*:*:*
measuresoftscadapro2.1cpe:2.3:a:measuresoft:scadapro:2.1:*:*:*:*:*:*:*
measuresoftscadapro2.2cpe:2.3:a:measuresoft:scadapro:2.2:*:*:*:*:*:*:*
measuresoftscadapro2.3cpe:2.3:a:measuresoft:scadapro:2.3:*:*:*:*:*:*:*
measuresoftscadapro2.4cpe:2.3:a:measuresoft:scadapro:2.4:*:*:*:*:*:*:*
measuresoftscadapro2.4.1cpe:2.3:a:measuresoft:scadapro:2.4.1:*:*:*:*:*:*:*
measuresoftscadapro2.4.2cpe:2.3:a:measuresoft:scadapro:2.4.2:*:*:*:*:*:*:*
measuresoftscadapro2.4.3cpe:2.3:a:measuresoft:scadapro:2.4.3:*:*:*:*:*:*:*
measuresoftscadapro2.4.4cpe:2.3:a:measuresoft:scadapro:2.4.4:*:*:*:*:*:*:*
measuresoftscadapro2.4.5cpe:2.3:a:measuresoft:scadapro:2.4.5:*:*:*:*:*:*:*
Rows per page:
1-10 of 451

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8

Confidence

Low

EPSS

0.053

Percentile

93.1%