HIGH · 7.8

CVE-2013-2824

Schneider Electric StruxureWare SCADA Expert Vijeo Citect 7.40, Vijeo Citect 7.20 through 7.30SP1, CitectSCADA 7.20 through 7.30SP1, StruxureWare PowerSCADA Expert 7.30 through 7.30SR1, and PowerLogic...

Vulnerability Description

Schneider Electric StruxureWare SCADA Expert Vijeo Citect 7.40, Vijeo Citect 7.20 through 7.30SP1, CitectSCADA 7.20 through 7.30SP1, StruxureWare PowerSCADA Expert 7.30 through 7.30SR1, and PowerLogic SCADA 7.20 through 7.20SR1 do not properly handle exceptions, which allows remote attackers to cause a denial of service via a crafted packet.

CVSS Score

7.8

HIGH

AV:N/AC:L/Au:N/C:N/I:N/A:C
Confidentiality
NONE
Integrity
NONE
Availability
COMPLETE

Affected Products

VendorProductVersions
Schneider-ElectricCitectscada7.20
Schneider-ElectricPowerlogic Scada7.20
Schneider-ElectricStruxureware Powerscada Expert7.30
Schneider-ElectricStruxureware Scada Expert Vijeo Citect7.20

References

FAQ

What is CVE-2013-2824?

CVE-2013-2824 is a vulnerability with a CVSS score of 7.8 (HIGH). Schneider Electric StruxureWare SCADA Expert Vijeo Citect 7.40, Vijeo Citect 7.20 through 7.30SP1, CitectSCADA 7.20 through 7.30SP1, StruxureWare PowerSCADA Expert 7.30 through 7.30SR1, and PowerLogic...

How severe is CVE-2013-2824?

CVE-2013-2824 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2013-2824?

Check the references section above for vendor advisories and patch information. Affected products include: Schneider-Electric Citectscada, Schneider-Electric Powerlogic Scada, Schneider-Electric Struxureware Powerscada Expert, Schneider-Electric Struxureware Scada Expert Vijeo Citect.