5

CVE-2008-2005

Exploit
The SuiteLink Service (aka slssvc.exe) in WonderWare SuiteLink before 2.0 Patch 01, as used in WonderWare InTouch 8.0, allows remote attackers to cause a denial of service (NULL pointer dereference and service shutdown) and possibly execute arbitrary code via a large length value in a Registration packet to TCP port 5413, which causes a memory allocation failure.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
WonderwareIntouch Version8.0
WonderwareSuitelink Version2.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 16.32% 0.965
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/30063
http://www.coresecurity.com/?action=item&id=2187
Exploit
http://www.kb.cert.org/vuls/id/596268
US Government Resource
http://www.securityfocus.com/archive/1/491623/100/0/threaded
http://www.securityfocus.com/bid/28974
http://www.securitytracker.com/id?1019966
https://exchange.xforce.ibmcloud.com/vulnerabilities/42221
https://www.exploit-db.com/exploits/6474