Uncontrolled Resource Consumption Vulnerability in Schneider Electric Wonderware ArchestrA Logger
CVE-2017-9627
Key Information:
- Vendor
- Schneider Electric
- Vendor
- CVE Published:
- 7 July 2017
Badges
Summary
An uncontrolled resource consumption issue has been identified in Schneider Electric's Wonderware ArchestrA Logger, specifically in versions up to and including 2017.426.2307.1. This vulnerability potentially permits attackers to deplete the memory resources on the host machine, which may lead to service disruptions and denial of service conditions. If exploited, it could significantly impact system availability and operation.
Affected Version(s)
Schneider Electric Wonderware ArchestrA Logger Schneider Electric Wonderware ArchestrA Logger
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V3.1
Timeline
- 🟡
Public PoC available
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved