CVE-2010-4709
Automated Solutions Modbus/TCP Master OPC Server < 3.0.2 - Heap-Based Buffer Overflow via Crafted MODBUS Response Packet
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2010-4709. PoCs published by Jeremy Brown.
AI-analyzed exploit summary This PoC exploits a heap corruption vulnerability in Automated Solutions Modbus/TCP OPC Server by sending a crafted MODBUS packet with a manipulated length field. The vulnerability allows writing NULL dwords past the bounds of an allocated heap buffer, potentially leading to instability or further exploitation.
Description
Heap-based buffer overflow in Automated Solutions Modbus/TCP Master OPC Server before 3.0.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a MODBUS response packet with a crafted length field.
Exploits (1)
This PoC exploits a heap corruption vulnerability in Automated Solutions Modbus/TCP OPC Server by sending a crafted MODBUS packet with a manipulated length field. The vulnerability allows writing NULL dwords past the bounds of an allocated heap buffer, potentially leading to instability or further exploitation.