Vulnerability Details CVE-2020-6996
Triangle MicroWorks DNP3 Outstation LibrariesDNP3 Outstation .NET Protocol components and DNP3 Outstation ANSI C source code libraries are affected:3.16.00 through 3.25.01. A specially crafted message may cause a stack-based buffer overflow. Authentication is not required to exploit this vulnerability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 57.0%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2020-6996
-
cpe:2.3:a:trianglemicroworks:dnp3_source_code_library:3.16.00
-
cpe:2.3:a:trianglemicroworks:dnp3_source_code_library:3.16.01
-
cpe:2.3:a:trianglemicroworks:dnp3_source_code_library:3.17.00
-
cpe:2.3:a:trianglemicroworks:dnp3_source_code_library:3.18.00
-
cpe:2.3:a:trianglemicroworks:dnp3_source_code_library:3.19.00
-
cpe:2.3:a:trianglemicroworks:dnp3_source_code_library:3.20.00
-
cpe:2.3:a:trianglemicroworks:dnp3_source_code_library:3.21.00
-
cpe:2.3:a:trianglemicroworks:dnp3_source_code_library:3.22.00
-
cpe:2.3:a:trianglemicroworks:dnp3_source_code_library:3.23.00
-
cpe:2.3:a:trianglemicroworks:dnp3_source_code_library:3.24.00
-
cpe:2.3:a:trianglemicroworks:dnp3_source_code_library:3.25.00