Description
Format string vulnerability in the logText function in shmemmgr9.dll in IGSSdataServer.exe 9.00.00.11074, and 9.00.00.11063 and earlier, in 7-Technologies Interactive Graphical SCADA System (IGSS) allows remote attackers to cause a denial of service and possibly execute arbitrary code, as demonstrated using the RMS Reports Delete command, related to the logging of messages to GSST.LOG. NOTE: some of these details are obtained from third party information.
Exploits (1)
exploitdb
WORKING POC
by Luigi Auriemma · textremotewindows
https://www.exploit-db.com/exploits/17024
References (7)
Scores
EPSS
0.4421
EPSS Percentile
97.6%
Details
CWE
CWE-134
Status
published
Products (1)
7t/igss
Published
Apr 05, 2011
Tracked Since
Feb 18, 2026