The installed version of IGSS from 7-Technologies is earlier than 9.0.0.11143. As such, it potentially has a memory corruption error in the Open Database Connectivity (ODBC) component listening on TCP port 20222.
Using specially crafted packets, an unauthenticated, remote attacker could leverage this issue to execute arbitrary code with administrative privileges.
Binary data scada_igss_9_0_0_11143.nbin
Vendor | Product | Version | CPE |
---|---|---|---|
schneider-electric | interactive_graphical_scada_system | cpe:/a:schneider-electric:interactive_graphical_scada_system |