Vulnerabilities > CVE-2017-9967 - Unspecified vulnerability in Schneider-Electric Interactive Graphical Scada System 10.0/12.0/9.0
Attack vector
LOCAL Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
A security misconfiguration vulnerability exists in Schneider Electric's IGSS SCADA Software versions 12 and prior. Security configuration settings such as Address Space Layout Randomization (ASLR) and Data Execution prevention (DEP) were not properly configured resulting in weak security.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |