CVE-2015-1014
published 2019-03-25CVE-2015-1014: A successful exploit of these vulnerabilities requires the local user to load a crafted DLL file in the system directory on servers running Schneider Electric…
PriorityP434high7.3CVSS 3.0
AVLACLPRLUIRSUCHIHAH
EPSS
0.46%
36.6th percentile
A successful exploit of these vulnerabilities requires the local user to load a crafted DLL file in the system directory on servers running Schneider Electric OFS v3.5 with version v7.40 of SCADA Expert Vijeo Citect/CitectSCADA, OFS v3.5 with version v7.30 of Vijeo Citect/CitectSCADA, and OFS v3.5 with version v7.20 of Vijeo Citect/CitectSCADA.. If the application attempts to open that file, the application could crash or allow the attacker to execute arbitrary code. Schneider Electric recommends vulnerable users upgrade the OFS to V3.5 and install the latest service pack (SP 6 or newer) for their associated version.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| schneider-electric | opc_factory_server | — | — |
| schneider_electric | ofs_v3.5 | < v7.40 of SCADA Expert Vijeo Citect/CitectSCADA | v7.40 of SCADA Expert Vijeo Citect/CitectSCADA |
| schneider_electric | ofs_v3.5 | < v7.30 of Vijeo Citect/CitectSCADA | v7.30 of Vijeo Citect/CitectSCADA |
| schneider_electric | ofs_v3.5 | < v7.20 of Vijeo Citect/CitectSCADA. | v7.20 of Vijeo Citect/CitectSCADA. |
CVSS provenance
nvdv3.07.3HIGHCVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
nvdv2.04.4MEDIUMAV:L/AC:M/Au:N/C:P/I:P/A:P
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA ICS
Schneider Electric OFS Server Vulnerability (Update A)
cisa_ics·2015-05-21
Schneider Electric OFS Server Vulnerability (Update A)
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Schneider Electric OFS Server Vulnerability (Update A)
Last RevisedJuly 14, 2015
Alert CodeICSA-15-141-01A
## OVERVIEW
## --------- Begin Update A Part 1 of 4 --------
This updated advisory is a follow-up to the original advisory titled ICSA-15-141-01 Schneider Electric OFS Server Vulnerability that was published May 21, 2015, on the NCCIC/ICS-CERT web site.
Ivan Sanchez from Nullcode Team has identified two instances of DLL hijacking in Schneider Electric’s OPC Factory Server (OFS) application. Schneider Electric has produced several new service patches that mitigate this vul
GHSA
GHSA-f7j5-fwrm-8242: A successful exploit of these vulnerabilities requires the local user to load a crafted DLL file in the system directory on servers running Schneider
ghsa_unreviewed·2022-05-13
CVE-2015-1014 [HIGH] CWE-427 GHSA-f7j5-fwrm-8242: A successful exploit of these vulnerabilities requires the local user to load a crafted DLL file in the system directory on servers running Schneider
A successful exploit of these vulnerabilities requires the local user to load a crafted DLL file in the system directory on servers running Schneider Electric OFS v3.5 with version v7.40 of SCADA Expert Vijeo Citect/CitectSCADA, OFS v3.5 with version v7.30 of Vijeo Citect/CitectSCADA, and OFS v3.5 with version v7.20 of Vijeo Citect/CitectSCADA.. If the application attempts to open that file, the application could crash or allow the attacker to execute arbitrary code. Schneider Electric recommends vulnerable users upgrade the OFS to V3.5 and install the latest service pack (SP 6 or newer) for their associated version.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2019-03-25
Published