{"api_version":"1","generated_at":"2026-07-23T04:32:30+00:00","cve":"CVE-2017-9628","urls":{"html":"https://cve.report/CVE-2017-9628","api":"https://cve.report/api/cve/CVE-2017-9628.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2017-9628","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2017-9628"},"summary":{"title":"CVE-2017-9628","description":"An Information Exposure issue was discovered in Saia Burgess Controls PCD Controllers with PCD firmware versions prior to 1.28.16 or 1.24.69. In certain circumstances, the device pads Ethernet frames with memory contents.","state":"PUBLIC","assigner":"ics-cert@hq.dhs.gov","published_at":"2017-10-05 01:29:00","updated_at":"2019-10-09 23:30:00"},"problem_types":["CWE-200"],"metrics":[],"references":[{"url":"https://ics-cert.us-cert.gov/advisories/ICSA-17-234-05","name":"https://ics-cert.us-cert.gov/advisories/ICSA-17-234-05","refsource":"MISC","tags":["Third Party Advisory","US Government Resource"],"title":"Saia Burgess Controls PCD Controllers | ICS-CERT","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/100949","name":"100949","refsource":"BID","tags":["Third Party Advisory","VDB Entry"],"title":"Malformed Request","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2017-9628","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2017-9628","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2017","cve_id":"9628","vulnerable":"-1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"saia_burgess_controls","cpe5":"pcd_controllers","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"9628","vulnerable":"0","versionEndIncluding":"1","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"saia_burgess_controls","cpe5":"pcd_controllers","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"9628","vulnerable":"1","versionEndIncluding":"1.24.67","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"saia_burgess_controls","cpe5":"pcd_controllers_firmware","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"9628","vulnerable":"1","versionEndIncluding":"1.28.11","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"saia_burgess_controls","cpe5":"pcd_controllers_firmware","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"CVE_data_meta":{"ASSIGNER":"ics-cert@hq.dhs.gov","ID":"CVE-2017-9628","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"Saia Burgess Controls PCD Controllers","version":{"version_data":[{"version_value":"Saia Burgess Controls PCD Controllers"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"An Information Exposure issue was discovered in Saia Burgess Controls PCD Controllers with PCD firmware versions prior to 1.28.16 or 1.24.69. In certain circumstances, the device pads Ethernet frames with memory contents."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"CWE-200"}]}]},"references":{"reference_data":[{"name":"https://ics-cert.us-cert.gov/advisories/ICSA-17-234-05","refsource":"MISC","url":"https://ics-cert.us-cert.gov/advisories/ICSA-17-234-05"},{"name":"100949","refsource":"BID","url":"http://www.securityfocus.com/bid/100949"}]}},"nvd":{"publishedDate":"2017-10-05 01:29:00","lastModifiedDate":"2019-10-09 23:30:00","problem_types":["CWE-200"],"metrics":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"LOW","integrityImpact":"NONE","availabilityImpact":"NONE","baseScore":5.3,"baseSeverity":"MEDIUM"},"exploitabilityScore":3.9,"impactScore":1.4},"baseMetricV2":{"cvssV2":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE","baseScore":5},"severity":"MEDIUM","exploitabilityScore":10,"impactScore":2.9,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}},"configurations":{"CVE_data_version":"4.0","nodes":[{"operator":"AND","children":[{"operator":"OR","children":[],"cpe_match":[{"vulnerable":true,"cpe23Uri":"cpe:2.3:o:saia_burgess_controls:pcd_controllers_firmware:*:*:*:*:*:*:*:*","versionEndIncluding":"1.24.67","cpe_name":[]},{"vulnerable":true,"cpe23Uri":"cpe:2.3:o:saia_burgess_controls:pcd_controllers_firmware:*:*:*:*:*:*:*:*","versionEndIncluding":"1.28.11","cpe_name":[]}]},{"operator":"OR","children":[],"cpe_match":[{"vulnerable":false,"cpe23Uri":"cpe:2.3:h:saia_burgess_controls:pcd_controllers:-:*:*:*:*:*:*:*","cpe_name":[]}]}],"cpe_match":[]}]}},"legacy_mitre":{"record":{"CveYear":"2017","CveId":"9628","Ordinal":"106651","Title":"CVE-2017-9628","CVE":"CVE-2017-9628","Year":"2017"},"notes":[{"CveYear":"2017","CveId":"9628","Ordinal":"1","NoteData":"An Information Exposure issue was discovered in Saia Burgess Controls PCD Controllers with PCD firmware versions prior to 1.28.16 or 1.24.69. In certain circumstances, the device pads Ethernet frames with memory contents.","Type":"Description","Title":null},{"CveYear":"2017","CveId":"9628","Ordinal":"2","NoteData":"2017-10-04","Type":"Other","Title":"Published"},{"CveYear":"2017","CveId":"9628","Ordinal":"3","NoteData":"2017-10-04","Type":"Other","Title":"Modified"}]}}}