9.8
CVSSv3

CVE-2020-10611

Published: 15/04/2020 Updated: 22/04/2020
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Triangle MicroWorks SCADA Data Gateway 3.02.0697 up to and including 4.0.122, 2.41.0213 up to and including 4.0.122 allows remote malicious users to execute arbitrary code due to the lack of proper validation of user-supplied data, which can result in a type confusion condition. Authentication is not required to exploit this vulnerability. Only applicable to installations using DNP3 Data Sets.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

trianglemicroworks scada data gateway