CVE-2017-9628
MEDIUMSaia Burgess Controls PCD <1.28.16-1.24.69 - Info Disclosure
Title source: llmDescription
An Information Exposure issue was discovered in Saia Burgess Controls PCD Controllers with PCD firmware versions prior to 1.28.16 or 1.24.69. In certain circumstances, the device pads Ethernet frames with memory contents.
References (2)
Core 2
Core References
Third Party Advisory, US Government Resource x_refsource_misc
https://ics-cert.us-cert.gov/advisories/ICSA-17-234-05
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/100949
Scores
CVSS v3
5.3
EPSS
0.0123
EPSS Percentile
65.4%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Details
CWE
CWE-200
Status
published
Products (2)
n/a/Saia Burgess Controls PCD Controllers
Saia Burgess Controls PCD Controllers
saia_burgess_controls/pcd_controllers_firmware
< 1.24.67
Published
Oct 05, 2017
Tracked Since
Feb 18, 2026