First published: Mon Jul 15 2019(Updated: )
A CWE-787: Out-of-bounds Write vulnerability exists in Interactive Graphical SCADA System (IGSS), Version 14 and prior, which could cause a software crash when data in the mdb database is manipulated.
Credit: cybersecurity@se.com
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider-electric Interactive Graphical Scada System | <=12.0 | |
Schneider-electric Interactive Graphical Scada System | >=13.0<13.0.0.19140 | |
Schneider-electric Interactive Graphical Scada System | >=14.0<14.0.0.19120 | |
Schneider Electric IGSS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2019-6827.
The title of the vulnerability is Schneider Electric IGSS MDB Database BaseUnits UnitIdx Out-Of-Bounds Write Remote Code Execution Vulnerability.
The severity of CVE-2019-6827 is high (7.8).
Schneider Electric IGSS versions 12.0, 13.0, and 14.0 are affected by CVE-2019-6827.
The vulnerability can be exploited by remote attackers by visiting a malicious page or opening a malicious file.