PT-2013-3926 · Ioserver · Ioserver Drivers

Adam Crain

+1

·

Published

2013-06-14

·

Updated

2013-06-17

·

CVE-2013-2783

CVSS v2.0

7.1

High

VectorAV:N/AC:M/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions IOServer drivers version 1.0.19.0
Description The issue allows remote attackers to cause a denial of service, resulting in an infinite loop, or obtain unspecified control by sending crafted data to the TCP port 20000.
Recommendations For IOServer drivers version 1.0.19.0, consider restricting access to TCP port 20000 until a patch is available. As a temporary workaround, disabling the DNP3 driver may help minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this issue.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-2783

Affected Products

Ioserver Drivers