Vulnerability Description
An arbitrary memory access vulnerability in the EPA protocol of Dut Computer Control Engineering Co.'s PLC MAC1100 allows attackers to read the contents of any variable area.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dcce | Mac1100 Plc Firmware | - |
| Dcce | Mac1100 Plc | - |
Related Weaknesses (CWE)
References
- https://github.com/Ni9htMar3/vulnerability/blob/master/PLC/DCCE/DCCE%20MAC1100%2ExploitThird Party Advisory
- https://github.com/Ni9htMar3/vulnerability/blob/master/PLC/DCCE/DCCE%20MAC1100%2ExploitThird Party Advisory
FAQ
What is CVE-2020-18756?
CVE-2020-18756 is a vulnerability with a CVSS score of 7.5 (HIGH). An arbitrary memory access vulnerability in the EPA protocol of Dut Computer Control Engineering Co.'s PLC MAC1100 allows attackers to read the contents of any variable area.
How severe is CVE-2020-18756?
CVE-2020-18756 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-18756?
Check the references section above for vendor advisories and patch information. Affected products include: Dcce Mac1100 Plc Firmware, Dcce Mac1100 Plc.