Vulnerabilities > CVE-2018-19029 - NULL Pointer Dereference vulnerability in Lcds Laquis Scada 4.1.0.3870

047910
CVSS 8.3 - HIGH
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
COMPLETE
network
lcds
CWE-476

Summary

LCDS Laquis SCADA prior to version 4.1.0.4150 allows an attacker using a specially crafted project file to supply a pointer for a controlled memory address, which may allow remote code execution, data exfiltration, or cause a system crash.

Vulnerable Configurations

Part Description Count
Application
Lcds
1

Common Weakness Enumeration (CWE)