← All CVEs

CVE-2010-4557

high · 10

Buffer overflow in the lm_tcp service in Invensys Wonderware InBatch 8.1 and 9.0, as used in Invensys Foxboro I/A Series Batch 8.1 and possibly other products, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted request to port 9001.

10
CVSS
12.1%
EPSS (exploit prob.)
96th
EPSS percentile
2010-12-17
Published

AV:N/AC:L/Au:N/C:C/I:C/A:C

Weaknesses

CWE-119

Affected products

VendorProductAffected versions
invensyswonderware_inbatch8.1
invensyswonderware_inbatch9.0
invensysfoxboro_i/a_series_batch8.1

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2010-4557