SCADA DaqFactory HMI NETB Request Overflow (CVE-2011-3492)
| Check Point Reference: | CPAI-2013-026 | |
| Date Published: | ||
| Severity: | ||
| Source: | Luigi_Auriemma | |
| Industry Reference(s): | CVE-2011-3492 |
|
| Protection Provided by: |
Security Gateway
|
|
|
Who is Vulnerable? DAQFactory 5.85 build 1853 and earlier |
||
| Vulnerability Description Stack-based buffer overflow has been reported in Azeotech DAQFactory. The vulnerability is due to insufficient validation of incoming NETB requests to UDP port 20034. A remote attacker could exploit this vulnerability by sending a malicious request to the affected service. Successful exploitation of this vulnerability can result in denial of service and arbitrary code execution. |
||
Protection Overview
This protection will detect and block the transferring of a specially crafted NETB request to the affected server.
To configure the defense, select your product from the list below and follow the related protection steps.