CVE-2013-0657 Information

Description

Stack-based buffer overflow in Schneider Electric Interactive Graphical SCADA System (IGSS) 10 and earlier allows remote attackers to execute arbitrary code by sending TCP port-12397 data that does not comply with a protocol.

Reference

http://igss.schneider-electric.com/igss/igssupdates/v100/progupdatesv100.zip http://igss.schneider-electric.com/igss/igssupdates/v90/progupdatesv90.zip http://www.us-cert.gov/control_systems/pdf/ICSA-13-018-01.pdf https://www.exploit-db.com/exploits/45218/

Share on: