10
CVE-2011-3143
- EPSS 4.61%
- Veröffentlicht 16.08.2011 21:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Use-after-free vulnerability in Control Microsystems ClearSCADA 2005, 2007, and 2009 before R2.3 and R1.4, as used in SCX before 67 R4.5 and 68 R3.9, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified long strings that trigger heap memory corruption.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Aveva ≫ Clearscada Version2005
Aveva ≫ Clearscada Version2007
Aveva ≫ Clearscada Version2009
Schneider-electric ≫ Scx 67 Version < r4.5
Schneider-electric ≫ Scx 68 Version < r3.9
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 4.61% | 0.887 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|