Lucene search

K
nessusThis script is Copyright (C) 2012-2024 and is owned by Tenable, Inc. or an Affiliate thereof.SCADA_KINGVIEW_6_53_2012-03-22.NBIN
HistoryJun 05, 2012 - 12:00 a.m.

WellinTech KingView 6.53 < 2012-03-22 Multiple Vulnerabilities

2012-06-0500:00:00
This script is Copyright (C) 2012-2024 and is owned by Tenable, Inc. or an Affiliate thereof.
www.tenable.com
15

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.11

Percentile

95.2%

According to its version, the instance of WellinTech KingView installed on the remote Windows host is affected by multiple vulnerabilities:

  • A denial of service vulnerability in ‘NetGenius.exe’ when parsing invalid pointer packets resulting in a buffer overflow.

  • A directory traversal vulnerability in ‘Touchvew.exe’ due to not sanitizing user input.

  • An insecure DLL loading vulnerability. (CVE-2012-1819)

  • A stack-based buffer overflow vulnerability that may be exploited via a specially-crafted packet sent to port 555. (CVE-2012-1830)

  • A heap-based buffer overflow vulnerability that may be exploited via a specially-crafted packet sent to port 555. (CVE-2012-1831)

  • An out-of-bounds read error that may be exploited via a specially-crafted packet sent to port 2001.
    (CVE-2012-1832)

  • A directory traversal vulnerability that may be exploited via a specially-crafted HTTP GET request on port 8001. (CVE-2012-2560)

Binary data scada_kingview_6_53_2012-03-22.nbin

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.11

Percentile

95.2%

Related for SCADA_KINGVIEW_6_53_2012-03-22.NBIN