MatrikonOPC DNP3 OPC Server CVE-2013-2829 Denial of Service Vulnerability
BID:65502
Info
MatrikonOPC DNP3 OPC Server CVE-2013-2829 Denial of Service Vulnerability
| Bugtraq ID: | 65502 |
| Class: | Input Validation Error |
| CVE: |
CVE-2013-2829 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 11 2014 12:00AM |
| Updated: | Feb 11 2014 12:00AM |
| Credit: | Adam Crain of Automatak and Chris Sistrunk |
| Vulnerable: |
MatrikonOPC DNP3 OPC Server 1.2 |
| Not Vulnerable: |
MatrikonOPC DNP3 OPC Server 1.2.2.0 |
Discussion
MatrikonOPC DNP3 OPC Server CVE-2013-2829 Denial of Service Vulnerability
MatrikonOPC DNP3 OPC Server is prone to a remote denial-of-service vulnerability because it fails to properly sanitize user-supplied input.
Successful exploits may allow an attacker to cause denial-of-service conditions.
DNP3 OPC Server versions prior to 1.2.2.0 are vulnerable.
MatrikonOPC DNP3 OPC Server is prone to a remote denial-of-service vulnerability because it fails to properly sanitize user-supplied input.
Successful exploits may allow an attacker to cause denial-of-service conditions.
DNP3 OPC Server versions prior to 1.2.2.0 are vulnerable.
Exploit / POC
MatrikonOPC DNP3 OPC Server CVE-2013-2829 Denial of Service Vulnerability
The exploit is not publicly available.
The exploit is not publicly available.
References
MatrikonOPC DNP3 OPC Server CVE-2013-2829 Denial of Service Vulnerability
References:
References:
- MatrikonOPC Homepage (Matrikon)
- Advisory (ICSA-14-010-01): MatrikonOPC Improper Input Validation (ICS-CERT)
- OPC Server for SCADA DNP3 - CVE-2013-2829 (MatrikonOPC)