The WAP interface in Trihedral VTScada (formerly VTS) 8.x through 11.x before 11.2.02 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via unspecified vectors.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://ics-cert.us-cert.gov/advisories/ICSA-16-159-01 | third party advisory us government resource |
http://www.securityfocus.com/bid/91077 | vdb entry third party advisory broken link |
http://www.zerodayinitiative.com/advisories/ZDI-16-405 | vdb entry third party advisory |