Vulnerabilities > Alstom

DATE CVE VULNERABILITY TITLE RISK
2013-12-01 CVE-2013-2818 Improper Input Validation vulnerability in Alstom E-Terracontrol 3.5/3.6/3.7
The DNP Master Driver in Alstom e-terracontrol 3.5, 3.6, and 3.7 allows physically proximate attackers to cause a denial of service (infinite loop and DNP3 service disruption) via crafted input over a serial line.
local
alstom CWE-20
4.7
2013-10-13 CVE-2013-2787 Improper Input Validation vulnerability in Alstom E-Terracontrol 3.5/3.6/3.7
Alstom e-terracontrol 3.5, 3.6, and 3.7 allows remote attackers to cause a denial of service (infinite loop) via crafted DNP3 packets.
network
low complexity
alstom CWE-20
7.8
2013-07-10 CVE-2013-2786 Permissions, Privileges, and Access Controls vulnerability in Alstom Micom S1 Agile and Micom S1 Studio
Alstom Grid MiCOM S1 Agile before 1.0.3 and Alstom Grid MiCOM S1 Studio use weak permissions for the MiCOM S1 %PROGRAMFILES% directory, which allows local users to gain privileges via a Trojan horse executable file.
local
alstom CWE-264
6.6