CVE-2017-7967
published 2017-05-09CVE-2017-7967: All versions of VAMPSET software produced by Schneider Electric, prior to V2.2.189, are susceptible to a memory corruption vulnerability when a corrupted vf2…
PriorityP421medium5.5CVSS 3.0
AVLACLPRLUINSUCNINAH
EPSS
0.29%
20.4th percentile
All versions of VAMPSET software produced by Schneider Electric, prior to V2.2.189, are susceptible to a memory corruption vulnerability when a corrupted vf2 file is used. This vulnerability causes the software to halt or not start when trying to open the corrupted file. This vulnerability occurs when fill settings are intentionally malformed and is opened in a standalone state, without connection to a protection relay. This attack is not considered to be remotely exploitable. This vulnerability has no effect on the operation of the protection relay to which VAMPSET is connected. As Windows operating system remains operational and VAMPSET responds, it is able to be shut down through its normal closing protocol.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| schneider-electric | vampset | <= 2.2.185 | — |
| schneider_electric_se | vampset | — | — |
CVSS provenance
nvdv3.05.5MEDIUMCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:N/I:N/A:P
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-m34p-hw58-6hwf: All versions of VAMPSET software produced by Schneider Electric, prior to V2
ghsa_unreviewed·2022-05-17
CVE-2017-7967 [MEDIUM] CWE-119 GHSA-m34p-hw58-6hwf: All versions of VAMPSET software produced by Schneider Electric, prior to V2
All versions of VAMPSET software produced by Schneider Electric, prior to V2.2.189, are susceptible to a memory corruption vulnerability when a corrupted vf2 file is used. This vulnerability causes the software to halt or not start when trying to open the corrupted file. This vulnerability occurs when fill settings are intentionally malformed and is opened in a standalone state, without connection to a protection relay. This attack is not considered to be remotely exploitable. This vulnerability has no effect on the operation of the protection relay to which VAMPSET is connected. As Windows operating system remains operational and VAMPSET responds, it is able to be shut down through its normal closing protocol.
CISA ICS
Schneider Electric VAMPSET
cisa_ics·2017-05-16
Schneider Electric VAMPSET
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Schneider Electric VAMPSET
Last RevisedMay 16, 2017
Alert CodeICSA-17-136-04
## CVSS v3 5.6
ATTENTION: Low skill level to exploit.
Vendor: Schneider Electric
Equipment: VAMPSET
Vulnerability: Memory Corruption
## AFFECTED PRODUCTS
Schneider Electric reports that the vulnerability affects the following VAMPSET setting and configuration software products:
- VAMPSET, versions prior to v2.2.189
## IMPACT
Successful exploitation of this vulnerability could allow a local attacker to cause the software to enter a denial-of-service condition. The Windows operating system remains
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2017-05-09
Published