PT-2016-6001 · Trihedral · Vtscada

Published

2016-06-09

·

Updated

2025-02-12

·

CVE-2016-4523

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Trihedral VTScada (formerly VTS) versions 8.x through 11.x before 11.2.02
Description The issue allows remote attackers to cause a denial of service, resulting in an out-of-bounds read and application crash, via unspecified vectors. This affects the WAP interface in the software.
Recommendations For versions 8.x through 11.x before 11.2.02, update to version 11.2.02 or later to resolve the issue. As a temporary workaround, consider restricting access to the WAP interface to minimize the risk of exploitation.

Fix

Out of bounds Read

Weakness Enumeration

Related Identifiers

CVE-2016-4523
ZDI-16-405

Affected Products

Vtscada