A Heap-based Buffer Overflow was found in Emerson OpenEnterprise SCADA Server 2.83 (if Modbus or ROC Interfaces have been installed and are in use) and all versions of OpenEnterprise 3.1 through 3.3.3, where a specially crafted script could execute code on the OpenEnterprise Server.
References
Link | Resource |
---|---|
https://www.us-cert.gov/ics/advisories/icsa-20-049-02 | Third Party Advisory US Government Resource |
Configurations
Configuration 1 (hide)
|
Information
Published : 2020-02-19 13:15
Updated : 2020-02-28 10:54
NVD link : CVE-2020-6970
Mitre link : CVE-2020-6970
JSON object : View
CWE
CWE-787
Out-of-bounds Write
Products Affected
emerson
- openenterprise_scada_server