First published: Wed Feb 09 2022(Updated: )
A CWE-125: Out-of-bounds Read vulnerability exists that could cause denial of service when an attacker repeatedly sends a specially crafted message. Affected Product: Interactive Graphical SCADA System Data Server (V15.0.0.22020 and prior)
Credit: cybersecurity@se.com
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider Electric IGSS | ||
Schneider-electric Interactive Graphical Scada System Data Server | <=15.0.0.22020 | |
Schneider Electric IGSS Data Server (IGSSdataServer.exe): v15.0.0.22020 and prior |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-24315.
Schneider Electric IGSS versions up to and including 15.0.0.22020 are affected by CVE-2022-24315.
CVE-2022-24315 has a severity of 7.5 (High).
Remote attackers can create a denial-of-service condition on affected installations of Schneider Electric IGSS by exploiting CVE-2022-24315.
No, authentication is not required to exploit CVE-2022-24315.