CVE-2017-9627
Summary
| CVE | CVE-2017-9627 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2017-07-07 17:29:00 UTC |
| Updated | 2023-02-01 17:38:00 UTC |
| Description | An Uncontrolled Resource Consumption issue was discovered in Schneider Electric Wonderware ArchestrA Logger, versions 2017.426.2307.1 and prior. The uncontrolled resource consumption vulnerability could allow an attacker to exhaust the memory resources of the machine, causing a denial of service. |
Risk And Classification
Problem Types: CWE-400
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Schneider-electric | Wonderware Archestra Logger | 2017.426.2307.1 | All | All | All |
| Application | Schneider Electric | Wonderware Archestra Logger | 2017.426.2307.1 | All | All | All |
| Application | Schneider Electric | Wonderware Archestra Logger | 2017.426.2307.1 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Schneider Wonderware ArchestrA Logger ICSA-17-187-04 Multiple Security Vulnerabilities | BID | www.securityfocus.com | Third Party Advisory, VDB Entry |
| Wonderware Information Server Flaws in ArchestrA Logger Component RPC Interface Let Remote Users Deny Service and Execute Arbitrary Code - SecurityTracker | SECTRACK | www.securitytracker.com | Third Party Advisory, VDB Entry |
| Schneider Electric Wonderware ArchestrA Logger | ICS-CERT | MISC | ics-cert.us-cert.gov | Third Party Advisory, US Government Resource |
| AVEVA - Global Leader in Industrial Software | MISC | software.schneider-electric.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.