CVE-2011-1566
7-Technologies IGSS <9.00.00.11059 - Path Traversal
Title source: llmDescription
Directory traversal vulnerability in dc.exe 9.00.00.11059 and earlier in 7-Technologies Interactive Graphical SCADA System (IGSS) allows remote attackers to execute arbitrary programs via ..\ (dot dot backslash) sequences in opcodes (1) 0xa and (2) 0x17 to TCP port 12397.
Exploits (4)
exploitdb
WORKING POC
VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/29129
exploitdb
WORKING POC
by Luigi Auriemma · textremotewindows
https://www.exploit-db.com/exploits/17024
metasploit
WORKING POC
EXCELLENT
by Luigi Auriemma, sinn3r · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/scada/igss9_misc.rb
metasploit
WORKING POC
EXCELLENT
by Luigi Auriemma, MC · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/scada/igss_exec_17.rb
References (6)
Scores
EPSS
0.7766
EPSS Percentile
99.0%
Details
CWE
CWE-22
Status
published
Products (1)
7t/igss
Published
Apr 05, 2011
Tracked Since
Feb 18, 2026