PT-2013-3926 · Ioserver · Ioserver Drivers
Adam Crain
+1
·
Published
2013-06-14
·
Updated
2013-06-17
·
CVE-2013-2783
CVSS v2.0
7.1
High
| Vector | AV:N/AC:M/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
IOServer drivers version 1.0.19.0
Description
The issue allows remote attackers to cause a denial of service, resulting in an infinite loop, or obtain unspecified control by sending crafted data to the TCP port 20000.
Recommendations
For IOServer drivers version 1.0.19.0, consider restricting access to TCP port 20000 until a patch is available. As a temporary workaround, disabling the DNP3 driver may help minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this issue.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ioserver Drivers