Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Jon Christmas

Researcher fromSolera Networks
#32063of 53,632
7.8Total CVSS
Vulnerabilities · 1
PT-2013-3927
7.8
2013-07-10
Triangle Research International · Nano-10 Plc · CVE-2013-2784
**Name of the Vulnerable Software and Affected Versions** Triangle Research International (aka Tri) Nano-10 PLC devices with firmware before r81 **Description** The issue is related to an incorrect algorithm used for bounds checking of data in Modbus/TCP packets. This allows remote attackers to cause a denial of service, resulting in a networking outage, by sending a crafted packet to TCP port 502. **Recommendations** For Triangle Research International (aka Tri) Nano-10 PLC devices with firmware before r81, update the firmware to version r81 or later to resolve the issue. As a temporary workaround, consider restricting access to TCP port 502 to minimize the risk of exploitation.