CVE-2011-1565: Path Traversal
Directory traversal vulnerability in IGSSdataServer.exe 9.00.00.11063 and earlier in 7-Technologies Interactive Graphical SCADA System (IGSS) allows remote attackers to (1) read (opcode 0x3) or (2) create or write (opcode 0x2) arbitrary files via ..\ (dot dot backslash) sequences to TCP port 12401.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-1565?
CVE-2011-1565 has a CVSS score that indicates a medium to high severity, depending on the environment and implementation.
How do I fix CVE-2011-1565?
To fix CVE-2011-1565, upgrade IGSSdataServer.exe to version 9.00.00.11064 or later.
What are the potential impacts of exploiting CVE-2011-1565?
Exploiting CVE-2011-1565 allows attackers to read or write arbitrary files, leading to potential data leakage or unauthorized modifications.
Which versions of the software are affected by CVE-2011-1565?
CVE-2011-1565 affects IGSSdataServer.exe version 9.00.00.11063 and earlier.
Can CVE-2011-1565 be exploited remotely?
Yes, CVE-2011-1565 can be exploited remotely via TCP port 12401 using directory traversal techniques.