Buffer Overflow Vulnerability in Schneider Electric's Interactive Graphical SCADA System
CVE-2021-22824
7.5HIGH
Key Information:
- Vendor
Schneider Electric
- Vendor
- CVE Published:
- 11 February 2022
What is CVE-2021-22824?
A vulnerability exists in Schneider Electric's Interactive Graphical SCADA System Data Collector that arises from a buffer overflow due to inadequate length checking on user-supplied data in messages received over the network. This flaw could be exploited to cause a denial of service, resulting in service interruptions. Users are urged to review the affected versions and apply any available patches to mitigate this vulnerability.
Affected Version(s)
Interactive Graphical SCADA System Data Collector (dc.exe) (V15.0.0.21320 and prior) Interactive Graphical SCADA System Data Collector (dc.exe) (V15.0.0.21320 and prior)