Triangle MicroWorks SCADA Data Gateway 3.02.0697 through 4.0.122, 2.41.0213 through 4.0.122 allows remote attackers to execute arbitrary code due to the lack of proper validation of user-supplied data, which can result in a type confusion condition. Authentication is not required to exploit this vulnerability. Only applicable to installations using DNP3 Data Sets.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2020-04-15T18:36:16
Updated: 2024-08-04T11:06:10.007Z
Reserved: 2020-03-16T00:00:00
Link: CVE-2020-10611
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2020-04-15T19:15:13.613
Modified: 2020-04-22T17:32:00.387
Link: CVE-2020-10611
Redhat
No data.