Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2014-9190
Stack-based buffer overflow in Schneider Electric Wonderware InTouch Access Anywhere Server 10.6 and 11.0 allows remote attackers to execute arbitrary code via a request for a filename that does not exist.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.053
EPSS Ranking
89.7%
CVSS Severity
CVSS v2 Score
10.0
References
https://wdnresource.wonderware.com/support/docs/_SecurityBulletins/Security_Bulletin_LFSEC00000104.pdf
https://www.cisa.gov/news-events/ics-advisories/icsa-15-008-02
https://ics-cert.us-cert.gov/advisories/ICSA-15-008-02
https://wdnresource.wonderware.com/support/docs/_SecurityBulletins/Security_Bulletin_LFSEC00000104.pdf
Products affected by CVE-2014-9190
Schneider-Electric
»
Wonderware Intouch Access Anywhere Server
»
Version:
10.6
cpe:2.3:a:schneider-electric:wonderware_intouch_access_anywhere_server:10.6
Schneider-Electric
»
Wonderware Intouch Access Anywhere Server
»
Version:
11.0
cpe:2.3:a:schneider-electric:wonderware_intouch_access_anywhere_server:11.0
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved