CVE-2011-1566

7-Technologies IGSS <9.00.00.11059 - Path Traversal

Title source: llm

Description

Directory traversal vulnerability in dc.exe 9.00.00.11059 and earlier in 7-Technologies Interactive Graphical SCADA System (IGSS) allows remote attackers to execute arbitrary programs via ..\ (dot dot backslash) sequences in opcodes (1) 0xa and (2) 0x17 to TCP port 12397.

Exploits (4)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/29129
exploitdb WORKING POC
by Luigi Auriemma · textremotewindows
https://www.exploit-db.com/exploits/17024
metasploit WORKING POC EXCELLENT
by Luigi Auriemma, sinn3r · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/scada/igss9_misc.rb
metasploit WORKING POC EXCELLENT
by Luigi Auriemma, MC · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/scada/igss_exec_17.rb

Scores

EPSS 0.7766
EPSS Percentile 99.0%

Details

CWE
CWE-22
Status published
Products (1)
7t/igss
Published Apr 05, 2011
Tracked Since Feb 18, 2026