CVE-2013-2821
Published Dec 21, 2013
Last updated 11 years ago
Overview
- Description
- NovaTech Orion Substation Automation Platform OrionLX DNP Master 1.27.38 and DNP Slave 1.23.10 and earlier and Orion5/Orion5r DNP Master 1.27.38 and DNP Slave 1.23.10 and earlier allow remote attackers to cause a denial of service (driver crash and process restart) via a crafted DNP3 TCP packet.
- Source
- ics-cert@hq.dhs.gov
- NVD status
- Analyzed
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.1
- Impact score
- 6.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:N/I:N/A:C
Weaknesses
- nvd@nist.gov
- CWE-20
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:novatech:orion5_dnp_master:1.27.38:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5C40787E-A8BB-4879-9F5C-D01313F9692C" }, { "criteria": "cpe:2.3:h:novatech:orion5_dnp_slave:1.23.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EC7B9C62-1179-40BD-96D2-E07D96D1EFF6" }, { "criteria": "cpe:2.3:h:novatech:orion5r_dnp_master:1.27.38:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "993DD1D1-3F96-46C3-9259-20934AD18FAE" }, { "criteria": "cpe:2.3:h:novatech:orion5r_dnp_slave:1.23.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E9BD6515-AF5B-46A6-8689-DEE9DE22F188" }, { "criteria": "cpe:2.3:h:novatech:orionlx_dnp_master:1.27.38:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D4BC0BAF-D4E8-41ED-A876-E6EBCD38A1DE" }, { "criteria": "cpe:2.3:h:novatech:orionlx_dnp_slave:1.23.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "99B7DAE9-335E-4CB6-9CCB-9A326607BD82" } ], "operator": "OR" } ] } ]