Remote Code Execution Vulnerability in ABB MicroSCADA stack destruction

Source: Internet
Author: User

Release date:
Updated on:

Affected Systems:
ABB MicroSCADA <9.4
Description:
--------------------------------------------------------------------------------
Bugtraq id: 63903

ABB MicroSCADA is a microcomputer-based Programmable monitoring system developed for electric power, railway, natural gas, regional heating, water supply, and petroleum networks.

The wserver.exe component (TCP port 12221) of ABB microscadahas a security vulnerability in implementation. This component does not effectively verify user data and can cause stack corruption. Remote attackers can exploit this vulnerability to execute arbitrary code in the context of the affected process.

<* Source: Andrea Micalizzi aka rgod

Link: http://secunia.com/advisories/55845/
Http://www.zerodayinitiative.com/advisories/ZDI-13-270/
Http://www.zerodayinitiative.com/advisories/ZDI-13-268/
Bytes
*>

Suggestion:
--------------------------------------------------------------------------------
Vendor patch:

ABB
---
ABB has released a Security Bulletin (ABB-VU-PSAC-1MRS235805) and patches for this:
ABB-VU-PSAC-1MRS235805: ABB-VU-PSAC-1MRS235805
Link: Workshop

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.