Vulnerability Details CVE-2013-2823
The (1) Catapult DNP3 I/O driver before 7.2.0.60 and the (2) GE Intelligent Platforms Proficy DNP3 I/O driver before 7.20k, as used in DNPDrv.exe (aka the DNP master station server) in GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY and iFIX, allow physically proximate attackers to cause a denial of service (infinite loop) via crafted input over a serial line.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 32.2%
CVSS Severity
CVSS v2 Score 4.7
Products affected by CVE-2013-2823
-
cpe:2.3:a:catapultsoftware:catapult_dnp3_i/o_driver:7.2.0.60
-
cpe:2.3:a:catapultsoftware:catapult_dnp3_i/o_driver:7.20.56
-
cpe:2.3:a:ge:intelligent_platforms_proficy_dnp3_i/o_driver:7.20
-
cpe:2.3:a:ge:intelligent_platforms_proficy_hmi/scada_cimplicity:4.01
-
cpe:2.3:a:ge:intelligent_platforms_proficy_hmi/scada_cimplicity:7.5
-
cpe:2.3:a:ge:intelligent_platforms_proficy_hmi/scada_cimplicity:8.0
-
cpe:2.3:a:ge:intelligent_platforms_proficy_hmi/scada_cimplicity:8.1
-
cpe:2.3:a:ge:intelligent_platforms_proficy_hmi/scada_cimplicity:8.2
-
cpe:2.3:a:ge:intelligent_platforms_proficy_hmi/scada_ifix:5.0
-
cpe:2.3:a:ge:intelligent_platforms_proficy_hmi/scada_ifix:5.1