SCADA: 7T Interactive Graphical SCADA System IGSSdataServer.exe Buffer Overflow
This signature detects attempts to exploit a known vulnerability in the IGSSdataServer.exe service of 7T Interactive Graphical SCADA System. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the server.
Extended Description
Multiple stack-based buffer overflows in IGSSdataServer.exe 9.00.00.11063 and earlier in 7-Technologies Interactive Graphical SCADA System (IGSS) allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted (1) ListAll, (2) Write File, (3) ReadFile, (4) Delete, (5) RenameFile, and (6) FileInfo commands in an 0xd opcode; (7) the Add, (8) ReadFile, (9) Write File, (10) Rename, (11) Delete, and (12) Add commands in an RMS report templates (0x7) opcode; and (13) 0x4 command in an STDREP request (0x8) opcode to TCP port 12401.
Affected Products
7t igss
References
BugTraq: 46936
CVE: CVE-2011-4050
URL: http://aluigi.org/adv/igss_1-adv.txt http://aluigi.org/adv/igss_2-adv.txt http://aluigi.org/adv/igss_3-adv.txt http://aluigi.org/adv/igss_4-adv.txt http://aluigi.org/adv/igss_5-adv.txt http://aluigi.org/adv/igss_6-adv.txt http://aluigi.org/adv/igss_7-adv.txt http://www.igss.com/ http://aluigi.altervista.org/adv/igss_2-adv.txt http://www.us-cert.gov/control_systems/pdf/ICSA-11-132-01A.pdf http://www.igss.com/company/news-and-press-center/11-03-25/igss_%e2%80%93_ongoing_focus_on_security.aspx
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
7t
10.0
5.0