Vulnerability Description
The Kepware DNP Master Driver for the KEPServerEX Communications Platform before 5.12.140.0 allows remote attackers to cause a denial of service (master-station infinite loop) via crafted DNP3 packets to TCP port 20000 and allows physically proximate attackers to cause a denial of service (master-station infinite loop) via crafted input over a serial line.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Kepware | Kepserverex | < 5.12.140.0 |
Related Weaknesses (CWE)
References
- http://ics-cert.us-cert.gov/advisories/ICSA-13-226-01Third Party AdvisoryUS Government Resource
- http://ics-cert.us-cert.gov/advisories/ICSA-13-226-01Third Party AdvisoryUS Government Resource
FAQ
What is CVE-2013-2789?
CVE-2013-2789 is a vulnerability with a CVSS score of 7.8 (HIGH). The Kepware DNP Master Driver for the KEPServerEX Communications Platform before 5.12.140.0 allows remote attackers to cause a denial of service (master-station infinite loop) via crafted DNP3 packets...
How severe is CVE-2013-2789?
CVE-2013-2789 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2013-2789?
Check the references section above for vendor advisories and patch information. Affected products include: Kepware Kepserverex.