SCADA: Sielco Sistemi Winlog Lite Buffer Overflow 1

This signature detects attempts to exploit a known vulnerability in the Sielco Sistemi Winlog Lite. A successful attack can lead to a buffer overflow and allow attackers to execute arbitrary code within the context of the application using the vulnerable control.

Extended Description

Buffer overflow in RunTime.exe in Sielco Sistemi Winlog Pro SCADA before 2.07.18 and Winlog Lite SCADA before 2.07.18 allows remote attackers to execute arbitrary code via a crafted packet to TCP port 46824. NOTE: some of these details are obtained from third party information.

Affected Products

Sielcosistemi winlog_lite

References

BugTraq: 53811

CVE: CVE-2012-3815

Short Name
SCADA:SIELCO-SISTEMI-WINLOG-BO1
Severity
Major
Recommended
False
Recommended Action
Drop
Category
SCADA
Keywords
1 Buffer CVE-2012-3815 Lite Overflow Sielco Sistemi Winlog bid:53811
Release Date
12/08/2015
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
Port
TCP/46824
False Positive
Unknown
Vendors

Sielcosistemi

CVSS Score

9.3

Found a potential security threat?