CVE-2022-24310: Integer Overflow
A CWE-190: Integer Overflow or Wraparound vulnerability exists that could cause heap-based buffer overflow, leading to denial of service and potentially remote code execution when an attacker sends multiple specially crafted messages. Affected Product: Interactive Graphical SCADA System Data Server (V15.0.0.22020 and prior)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2022-24310?
CVE-2022-24310 is a vulnerability that allows for a heap-based buffer overflow in the Interactive Graphical SCADA System Data Server, potentially leading to denial of service and remote code execution.
What is the severity of CVE-2022-24310?
The severity of CVE-2022-24310 is rated as critical with a severity value of 9.8.
How does CVE-2022-24310 impact Schneider Electric IGSS?
CVE-2022-24310 affects Schneider Electric IGSS versions up to and including 15.0.0.22020, potentially leading to denial of service and remote code execution.
How can I fix CVE-2022-24310?
To fix CVE-2022-24310, it is recommended to apply the necessary updates or patches provided by Schneider Electric to the affected IGSS system.
Where can I find more information about CVE-2022-24310?
More information about CVE-2022-24310 can be found at the following reference: [CVE-2022-24310](https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2022-039-01).