APP: Schneider Electric InduSoft Web Studio Remote Code Execution

This signature detects attempts to exploit a known vulnerability against InduSoft Web Studio. A successful attack can lead to arbitrary code execution.

Extended Description

The Remote Agent component in Schneider Electric InduSoft Web Studio before 8.0 allows remote attackers to execute arbitrary code via unspecified vectors, aka ZDI-CAN-2649.

Affected Products

Indusoft web_studio

References

CVE: CVE-2015-7374

Short Name
APP:MISC:SCHNEIDER-INDUSOFT-RCE
Severity
Major
Recommended
True
Recommended Action
Drop
Category
APP
Keywords
CVE-2015-7374 Code Electric Execution InduSoft Remote Schneider Studio Web
Release Date
11/17/2015
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3337
Port
TCP/1234
False Positive
Unknown
Vendors

Indusoft

CVSS Score

7.5

Found a potential security threat?