ID
VAR-E-201102-0738
TITLE
7T Interactive Graphical SCADA System Malformed Packet Remote Memory Corruption Vulnerability
Trust: 0.3
DESCRIPTION
7T Interactive Graphical SCADA System is prone to a remote memory-corruption vulnerability.
An attacker can exploit this issue to execute arbitrary code with administrative privileges. Successfully exploiting this issue will completely comprise the affected system. Failed exploit attempts will result in a denial-of-service condition.
Trust: 0.3
AFFECTED PRODUCTS
| vendor: | 7 | model: | interactive graphical scada system | scope: | eq | version: | 9 | Trust: 0.3 |
| vendor: | 7 | model: | interactive graphical scada system | scope: | eq | version: | 8 | Trust: 0.3 |
EXPLOIT
The following proof-of-concept code is available:
Bullet list:
<li><a href="/data/vulnerabilities/exploits/46310.py">/data/vulnerabilities/exploits/46310.py</a></li>
Trust: 0.3
PRICE
Free
Trust: 0.3
TYPE
Boundary Condition Error
Trust: 0.3
CREDITS
Jeremy Brown
Trust: 0.3
EXTERNAL IDS
| db: | ICS CERT | id: | ICSA-11-018-02 | Trust: 0.3 |
| db: | BID | id: | 46310 | Trust: 0.3 |
REFERENCES
| url: | http://www.igss.com/ | Trust: 0.3 |
| url: | http://www.us-cert.gov/control_systems/pdf/icsa-11-018-02.pdf | Trust: 0.3 |
SOURCES
| db: | BID | id: | 46310 |
LAST UPDATE DATE
2022-07-27T09:50:09.496000+00:00
SOURCES UPDATE DATE
| db: | BID | id: | 46310 | date: | 2011-03-23T19:06:00 |
SOURCES RELEASE DATE
| db: | BID | id: | 46310 | date: | 2011-02-10T00:00:00 |