Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2013-6142


DNP3Driver.exe in the DNP3 driver in Schneider Electric ClearSCADA 2010 R2 through 2010 R3.1 and SCADA Expert ClearSCADA 2013 R1 through 2013 R1.2 allows remote attackers to cause a denial of service (resource consumption) via IP packets containing errors that trigger event-journal messages.


Published

2014-01-15T16:11:08.363

Last Modified

2025-04-11T00:51:21.963

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 4.3 (MEDIUM)

CVSSv2 Vector

AV:N/AC:M/Au:N/C:N/I:N/A:P

  • Access Vector: NETWORK
  • Access Complexity: MEDIUM
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: PARTIAL
Exploitability Score

8.6

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-399

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application aveva clearscada 2010 Yes
Application aveva clearscada 2010 Yes
Application aveva clearscada 2010 Yes
Application aveva clearscada 2010 Yes
Application aveva clearscada 2013 Yes
Application aveva clearscada 2013 Yes
Application aveva clearscada 2013 Yes
Application aveva clearscada 2013 Yes

References