7.1
CVE-2014-2345
- EPSS 0.94%
- Veröffentlicht 05.06.2014 17:55:05
- Zuletzt bearbeitet 02.10.2025 23:15:30
- Quelle ics-cert@hq.dhs.gov
- CVE-Watchlists
- Unerledigt
COPA-DATA zenon DNP3 NG driver (DNP3 master) 7.10 and 7.11 through 7.11 SP0 build 10238 and zenon DNP3 Process Gateway (DNP3 outstation) 7.11 SP0 build 10238 and earlier allow remote attackers to cause a denial of service (infinite loop and process crash) by sending a crafted DNP3 packet over TCP.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Copadata ≫ Zenon Dnp3 Ng Driver Version7.10
Copadata ≫ Zenon Dnp3 Ng Driver Version7.11 Update-
Copadata ≫ Zenon Dnp3 Ng Driver Version7.11 Updatesp0_build_10238
Copadata ≫ Zenon Dnp3 Process Gateway Version7.11 Updatesp0_build_10238
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.94% | 0.755 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.1 | 8.6 | 6.9 |
AV:N/AC:M/Au:N/C:N/I:N/A:C
|
| ics-cert@hq.dhs.gov | 7.1 | 8.6 | 6.9 |
AV:N/AC:M/Au:N/C:N/I:N/A:C
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.