PT-2011-3684 · 7T · 7T Interactive Graphical Scada System

Sebastien Renaud

·

Published

2011-05-31

·

Updated

2018-10-09

·

CVE-2011-2214

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions 7T Interactive Graphical SCADA System (IGSS) versions prior to 9.0.0.11143
Description The issue is related to an unspecified vulnerability in the Open Database Connectivity (ODBC) component. It allows remote attackers to execute arbitrary code via a crafted packet to TCP port 20222. This triggers memory corruption due to an invalid structure being used.
Recommendations For versions prior to 9.0.0.11143, update to version 9.0.0.11143 or later to resolve the issue. As a temporary workaround, consider restricting access to TCP port 20222 to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2011-2214

Affected Products

7T Interactive Graphical Scada System