CVE-2013-2811

The (1) Catapult DNP3 I/O driver before 7.2.0.60 and the (2) GE Intelligent Platforms Proficy DNP3 I/O driver before 7.20k, as used in DNPDrv.exe (aka the DNP master station server) in GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY and iFIX, allow remote attackers to cause a denial of service (infinite loop) via a crafted DNP3 TCP packet.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.1 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:C
icscertCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 78%
VendorProductVersion
catapultsoftwarecatapult_dnp3_i\/o_driver
𝑥
≤ 7.20.56
geintelligent_platforms_proficy_dnp3_i\/o_driver
𝑥
≤ 7.20
geintelligent_platforms_proficy_dnp3_i\/o_driver
7.20
geintelligent_platforms_proficy_dnp3_i\/o_driver
7.20:a
geintelligent_platforms_proficy_dnp3_i\/o_driver
7.20:b
geintelligent_platforms_proficy_dnp3_i\/o_driver
7.20:c
geintelligent_platforms_proficy_dnp3_i\/o_driver
7.20:d
geintelligent_platforms_proficy_dnp3_i\/o_driver
7.20:e
geintelligent_platforms_proficy_dnp3_i\/o_driver
7.20:f
geintelligent_platforms_proficy_dnp3_i\/o_driver
7.20:g
geintelligent_platforms_proficy_dnp3_i\/o_driver
7.20:h
geintelligent_platforms_proficy_dnp3_i\/o_driver
7.20:i
geintelligent_platforms_proficy_hmi\/scada_cimplicity
4.01
geintelligent_platforms_proficy_hmi\/scada_cimplicity
7.5
geintelligent_platforms_proficy_hmi\/scada_cimplicity
8.0
geintelligent_platforms_proficy_hmi\/scada_cimplicity
8.1
geintelligent_platforms_proficy_hmi\/scada_cimplicity
8.2
geintelligent_platforms_proficy_hmi\/scada_ifix
5.0
geintelligent_platforms_proficy_hmi\/scada_ifix
5.1
𝑥
= Vulnerable software versions