First published: Mon Nov 06 2017(Updated: )
An Uncontrolled Search Path Element issue was discovered in Trihedral VTScada 11.3.03 and prior. The program will execute specially crafted malicious dll files placed on the target machine.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Trihedral VTScada | <=11.3.03 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-14029 is classified as a medium severity vulnerability due to the potential for arbitrary code execution.
To mitigate CVE-2017-14029, update Trihedral VTScada to version 11.3.04 or later where the vulnerability has been addressed.
CVE-2017-14029 affects Trihedral VTScada versions 11.3.03 and prior.
Exploitation of CVE-2017-14029 could allow an attacker to execute malicious DLL files on the target machine.
As of now, specific public exploits for CVE-2017-14029 have not been widely reported, but the vulnerability's nature makes potential exploitation feasible.