CVE-2011-1568

7-Technologies IGSS <9.00.00.11074 - RCE

Title source: llm
STIX 2.1

Description

Format string vulnerability in the logText function in shmemmgr9.dll in IGSSdataServer.exe 9.00.00.11074, and 9.00.00.11063 and earlier, in 7-Technologies Interactive Graphical SCADA System (IGSS) allows remote attackers to cause a denial of service and possibly execute arbitrary code, as demonstrated using the RMS Reports Delete command, related to the logging of messages to GSST.LOG. NOTE: some of these details are obtained from third party information.

Exploits (1)

exploitdb WORKING POC
by Luigi Auriemma · textremotewindows
https://www.exploit-db.com/exploits/17024

Scores

EPSS 0.4421
EPSS Percentile 97.6%

Details

CWE
CWE-134
Status published
Products (1)
7t/igss
Published Apr 05, 2011
Tracked Since Feb 18, 2026