ID

VAR-E-201102-0738


TITLE

7T Interactive Graphical SCADA System Malformed Packet Remote Memory Corruption Vulnerability

Trust: 0.3

sources: BID: 46310

DESCRIPTION

7T Interactive Graphical SCADA System is prone to a remote memory-corruption vulnerability.
An attacker can exploit this issue to execute arbitrary code with administrative privileges. Successfully exploiting this issue will completely comprise the affected system. Failed exploit attempts will result in a denial-of-service condition.

Trust: 0.3

sources: BID: 46310

AFFECTED PRODUCTS

vendor:7model:interactive graphical scada systemscope:eqversion:9

Trust: 0.3

vendor:7model:interactive graphical scada systemscope:eqversion:8

Trust: 0.3

sources: BID: 46310

EXPLOIT

The following proof-of-concept code is available:
Bullet list:
<li><a href="/data/vulnerabilities/exploits/46310.py">/data/vulnerabilities/exploits/46310.py</a></li>

Trust: 0.3

sources: BID: 46310

PRICE

Free

Trust: 0.3

sources: BID: 46310

TYPE

Boundary Condition Error

Trust: 0.3

sources: BID: 46310

CREDITS

Jeremy Brown

Trust: 0.3

sources: BID: 46310

EXTERNAL IDS

db:ICS CERTid:ICSA-11-018-02

Trust: 0.3

db:BIDid:46310

Trust: 0.3

sources: BID: 46310

REFERENCES

url:http://www.igss.com/

Trust: 0.3

url:http://www.us-cert.gov/control_systems/pdf/icsa-11-018-02.pdf

Trust: 0.3

sources: BID: 46310

SOURCES

db:BIDid:46310

LAST UPDATE DATE

2022-07-27T09:50:09.496000+00:00


SOURCES UPDATE DATE

db:BIDid:46310date:2011-03-23T19:06:00

SOURCES RELEASE DATE

db:BIDid:46310date:2011-02-10T00:00:00