ID

VAR-201609-0700


TITLE

Buffer Overflow Vulnerability in DCISoft Processing DCISoft

Trust: 0.6

sources: CNVD: CNVD-2016-10324

DESCRIPTION

Automation DCISoft is a dedicated electronic drawing software. Automation DCISoft has a buffer overflow vulnerability that allows an attacker to exploit this vulnerability to execute arbitrary code.

Trust: 0.6

sources: CNVD: CNVD-2016-10324

IOT TAXONOMY

category:['ICS']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2016-10324

AFFECTED PRODUCTS

vendor:deltamodel:automation dcisoftscope: - version: -

Trust: 0.6

sources: CNVD: CNVD-2016-10324

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2016-10324
value: LOW

Trust: 0.6

CNVD: CNVD-2016-10324
severity: LOW
baseScore: 3.6
vectorString: AV:L/AC:L/AU:N/C:N/I:P/A:P
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 3.9
impactScore: 4.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2016-10324

EXTERNAL IDS

db:CNVDid:CNVD-2016-10324

Trust: 0.6

sources: CNVD: CNVD-2016-10324

SOURCES

db:CNVDid:CNVD-2016-10324

LAST UPDATE DATE

2022-05-04T09:23:33.874000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2016-10324date:2016-10-31T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2016-10324date:2016-09-29T00:00:00