PT-2011-3684 · 7T · 7T Interactive Graphical Scada System
Sebastien Renaud
·
Published
2011-05-31
·
Updated
2018-10-09
·
CVE-2011-2214
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
7T Interactive Graphical SCADA System (IGSS) versions prior to 9.0.0.11143
Description
The issue is related to an unspecified vulnerability in the Open Database Connectivity (ODBC) component. It allows remote attackers to execute arbitrary code via a crafted packet to TCP port 20222. This triggers memory corruption due to an invalid structure being used.
Recommendations
For versions prior to 9.0.0.11143, update to version 9.0.0.11143 or later to resolve the issue. As a temporary workaround, consider restricting access to TCP port 20222 to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
7T Interactive Graphical Scada System