CVE-2011-1566

7-Technologies IGSS <9.00.00.11059 - Path Traversal

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 4 public exploits for CVE-2011-1566. PoCs published by Metasploit, Luigi Auriemma, Luigi Auriemma, sinn3r, including Metasploit module exploits/windows/scada/igss9_misc.

AI-analyzed exploit summary This Metasploit module exploits a directory traversal flaw in Interactive Graphical SCADA System v9.00, allowing arbitrary command execution via opcode 0x17. It constructs a malicious packet to trigger command injection in the dc.exe process.

Description

Directory traversal vulnerability in dc.exe 9.00.00.11059 and earlier in 7-Technologies Interactive Graphical SCADA System (IGSS) allows remote attackers to execute arbitrary programs via ..\ (dot dot backslash) sequences in opcodes (1) 0xa and (2) 0x17 to TCP port 12397.

Exploits (4)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/29129

This Metasploit module exploits a directory traversal flaw in Interactive Graphical SCADA System v9.00, allowing arbitrary command execution via opcode 0x17. It constructs a malicious packet to trigger command injection in the dc.exe process.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Interactive Graphical SCADA System v9.00
No auth needed
Prerequisites: Network access to the target system on port 12397
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC
by Luigi Auriemma · textremotewindows
https://www.exploit-db.com/exploits/17024

The exploit demonstrates multiple vulnerabilities in IGSSdataServer.exe, including directory traversal and remote stack overflows via crafted packets sent to port 12401. Proof-of-concept code is provided for downloading, uploading, and executing arbitrary files, as well as triggering buffer overflows.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: IGSS (Interactive Graphical SCADA System) <= 9.00.00.11063
No auth needed
Prerequisites: Network access to port 12401 · IGSS project running
devstral-2 · analyzed Feb 16, 2026 Full analysis →
metasploit WORKING POC EXCELLENT
by Luigi Auriemma, sinn3r · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/scada/igss9_misc.rb

This Metasploit module exploits CVE-2011-1565 and CVE-2011-1566 in 7-Technologies IGSS 9 by writing a payload via Write packets (opcode 0x0D) to the Data Server (port 12401) and executing it via an EXE packet (opcode 0x0A) to the Data Collector (port 12397).

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: 7-Technologies IGSS 9 Data Server/Collector
No auth needed
Prerequisites: Network access to ports 12401 and 12397 on the target system
devstral-2 · analyzed Feb 16, 2026 Full analysis →
metasploit WORKING POC EXCELLENT
by Luigi Auriemma, MC · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/scada/igss_exec_17.rb

This Metasploit module exploits a directory traversal flaw in Interactive Graphical SCADA System v9.00, allowing arbitrary command execution via opcode 0x17 sent to the dc.exe process. The exploit constructs a malicious packet to trigger command injection.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Interactive Graphical SCADA System v9.00
No auth needed
Prerequisites: Network access to the target system on port 12397
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (6)

Core 6
Core References
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/46936
Various Sources x_refsource_misc
http://aluigi.org/adv/igss_8-adv.txt
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/43849
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2011/0741
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/17024

Scores

EPSS 0.6698
EPSS Percentile 99.2%

Details

CWE
CWE-22
Status published
Products (1)
7t/igss
Published Apr 05, 2011
Tracked Since Feb 18, 2026