CVE-2013-0657: Buffer Overflow
Published Jan 21, 2013
·Updated
Stack-based buffer overflow in Schneider Electric Interactive Graphical SCADA System (IGSS) 10 and earlier allows remote attackers to execute arbitrary code by sending TCP port-12397 data that does not comply with a protocol.
Affected Software
2 affected components
Schneider-electric Interactive Graphical Scada System<=10.0
Schneider-electric Interactive Graphical Scada System=9.0
Remediation
Event History
Jan 21, 2013
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-0657?
CVE-2013-0657 is classified as a high severity vulnerability due to its potential to allow remote code execution.
2
How do I fix CVE-2013-0657?
To fix CVE-2013-0657, upgrade to a version of Schneider Electric Interactive Graphical SCADA System that is greater than 10.0.
3
Which versions of software are affected by CVE-2013-0657?
CVE-2013-0657 affects Schneider Electric Interactive Graphical SCADA System versions 10.0 and earlier, as well as version 9.0.
4
Can CVE-2013-0657 be exploited remotely?
Yes, CVE-2013-0657 can be exploited remotely by sending specially crafted data to TCP port 12397.
5
What type of vulnerability is CVE-2013-0657?
CVE-2013-0657 is a stack-based buffer overflow vulnerability.