Lucene search

K
cvelistIcscertCVELIST:CVE-2018-10620
HistoryJul 19, 2018 - 12:00 a.m.

CVE-2018-10620

2018-07-1900:00:00
CWE-121
icscert
www.cve.org
1

9.7 High

AI Score

Confidence

High

0.014 Low

EPSS

Percentile

86.5%

AVEVA InduSoft Web Studio v8.1 and v8.1SP1, and InTouch Machine Edition v2017 8.1 and v2017 8.1 SP1 a remote user could send a carefully crafted packet to exploit a stack-based buffer overflow vulnerability during tag, alarm, or event related actions such as read and write, with potential for code to be executed.

CNA Affected

[
  {
    "product": "InduSoft Web Studio",
    "vendor": "AVEVA Software, LLC",
    "versions": [
      {
        "status": "affected",
        "version": "v8.1 and v8.1SP1"
      }
    ]
  },
  {
    "product": "InTouch Machine Edition",
    "vendor": "AVEVA Software, LLC",
    "versions": [
      {
        "status": "affected",
        "version": "v2017 8.1 and v2017 8.1 SP1"
      }
    ]
  }
]

9.7 High

AI Score

Confidence

High

0.014 Low

EPSS

Percentile

86.5%

Related for CVELIST:CVE-2018-10620