Vulnerability Description
ProficySCADA for iOS 5.0.25920 contains a denial of service vulnerability that allows attackers to crash the application by manipulating the password input field. Attackers can overwrite the password field with 257 bytes of repeated characters to trigger an application crash and prevent successful authentication.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- https://download.cnet.com/proficyscada/3000-2064_4-75728256.html
- https://www.exploit-db.com/exploits/48236
- https://www.vulncheck.com/advisories/proficyscada-for-ios-password-denial-of-ser
FAQ
What is CVE-2020-37143?
CVE-2020-37143 is a vulnerability with a CVSS score of 7.5 (HIGH). ProficySCADA for iOS 5.0.25920 contains a denial of service vulnerability that allows attackers to crash the application by manipulating the password input field. Attackers can overwrite the password ...
How severe is CVE-2020-37143?
CVE-2020-37143 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-37143?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.