Exploitation Summary
EIP tracks 2 public exploits for CVE-2013-0657. PoCs published by Metasploit, Alejandro Parodi.
AI-analyzed exploit summary This Metasploit module exploits CVE-2013-0657 by leveraging two vulnerabilities in 7-Technologies IGSS 9: a Write File packet flaw (opcode 0x0D) to upload a payload to the Data Server (port 12401) and an EXE packet flaw (opcode 0x0A) to execute the payload via the Data Collector (port 12397).
Description
Stack-based buffer overflow in Schneider Electric Interactive Graphical SCADA System (IGSS) 10 and earlier allows remote attackers to execute arbitrary code by sending TCP port-12397 data that does not comply with a protocol.
Exploits (2)
This Metasploit module exploits CVE-2013-0657 by leveraging two vulnerabilities in 7-Technologies IGSS 9: a Write File packet flaw (opcode 0x0D) to upload a payload to the Data Server (port 12401) and an EXE packet flaw (opcode 0x0A) to execute the payload via the Data Collector (port 12397).
This exploit targets a buffer overflow vulnerability in SEIG SCADA SYSTEM 9, allowing remote code execution via a crafted payload sent to port 12397. The payload includes a SafeSEH bypass and a shellcode to execute 'calc.exe' as a proof of concept.