CVE-2018-10594

Delta Industrial Automation COMMGR from Delta Electronics versions 1.08 and prior with accompanying PLC Simulators (DVPSimulator EH2, EH3, ES2, SE, SS2 and AHSIM_5x0, AHSIM_5x1) utilize a fixed-length stack buffer where an unverified length value can be read from the network packets via a specific network port, causing the buffer to be overwritten. This may allow remote code execution, cause the application to crash, or result in a denial-of-service condition in the application server.
References
Link Resource
http://www.securityfocus.com/bid/104529 Third Party Advisory VDB Entry
https://ics-cert.us-cert.gov/advisories/ICSA-18-172-01 Third Party Advisory US Government Resource
https://www.exploit-db.com/exploits/44965/ Exploit Third Party Advisory VDB Entry
https://www.exploit-db.com/exploits/45574/ Exploit Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:deltaww:commgr:*:*:*:*:*:*:*:*
OR cpe:2.3:h:deltaww:dvpsimulator_ahsim_5x0:-:*:*:*:*:*:*:*
cpe:2.3:h:deltaww:dvpsimulator_ahsim_5x1:-:*:*:*:*:*:*:*
cpe:2.3:h:deltaww:dvpsimulator_eh2:-:*:*:*:*:*:*:*
cpe:2.3:h:deltaww:dvpsimulator_es2:-:*:*:*:*:*:*:*
cpe:2.3:h:deltaww:dvpsimulator_h3:-:*:*:*:*:*:*:*
cpe:2.3:h:deltaww:dvpsimulator_se:-:*:*:*:*:*:*:*
cpe:2.3:h:deltaww:dvpsimulator_ss2:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2018-06-26 20:29

Updated : 2024-02-04 19:46


NVD link : CVE-2018-10594

Mitre link : CVE-2018-10594

CVE.ORG link : CVE-2018-10594


JSON object : View

Products Affected

deltaww

  • dvpsimulator_se
  • dvpsimulator_es2
  • commgr
  • dvpsimulator_ss2
  • dvpsimulator_ahsim_5x0
  • dvpsimulator_h3
  • dvpsimulator_eh2
  • dvpsimulator_ahsim_5x1
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

CWE-121

Stack-based Buffer Overflow