vendor:
IGSS
by:
Luigi Auriemma, MC
N/A
CVSS
N/A
Directory Traversal
22
CWE
Product Name: IGSS
Affected Version From: 9.00
Affected Version To: 9.00
Patch Exists: NO
Related CWE: CVE-2011-1566
CPE: a:interactive_graphical_scada_system:igss:9.00
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2011
Interactive Graphical SCADA System Remote Command Injection
This module abuses a directory traversal flaw in Interactive Graphical SCADA System v9.00. In conjunction with the traversal flaw, if opcode 0x17 is sent to the dc.exe process, an attacker may be able to execute arbitrary system commands.
Mitigation:
No known mitigation or remediation is available for this vulnerability.