Vulnerabilites related to controlsystemworks - csworks
CVE-2011-3996 (GCVE-0-2011-3996)
Vulnerability from cvelistv5
Published
2011-11-03 17:00
Modified
2024-08-06 23:53
Severity ?
VLAI Severity ?
EPSS score ?
CWE
- n/a
Summary
The LiveData Service in CSWorks before 2.0.4115.1 allows remote attackers to cause a denial of service (service crash) via crafted TCP packets.
References
► | URL | Tags | |||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
{ "containers": { "adp": [ { "providerMetadata": { "dateUpdated": "2024-08-06T23:53:32.545Z", "orgId": "af854a3a-2127-422b-91ae-364da2661108", "shortName": "CVE" }, "references": [ { "name": "JVNDB-2011-000095", "tags": [ "third-party-advisory", "x_refsource_JVNDB", "x_transferred" ], "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2011-000095" }, { "tags": [ "x_refsource_CONFIRM", "x_transferred" ], "url": "http://www.controlsystemworks.com/blogengine/post/CSWorks-2041151-security-release.aspx" }, { "name": "JVN#98649286", "tags": [ "third-party-advisory", "x_refsource_JVN", "x_transferred" ], "url": "http://jvn.jp/en/jp/JVN98649286/index.html" }, { "name": "csworks-tcp-dos(71079)", "tags": [ "vdb-entry", "x_refsource_XF", "x_transferred" ], "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/71079" }, { "name": "50458", "tags": [ "vdb-entry", "x_refsource_BID", "x_transferred" ], "url": "http://www.securityfocus.com/bid/50458" }, { "tags": [ "x_refsource_CONFIRM", "x_transferred" ], "url": "http://www.controlsystemworks.com/ProductHistory.aspx" }, { "name": "46625", "tags": [ "third-party-advisory", "x_refsource_SECUNIA", "x_transferred" ], "url": "http://secunia.com/advisories/46625" } ], "title": "CVE Program Container" } ], "cna": { "affected": [ { "product": "n/a", "vendor": "n/a", "versions": [ { "status": "affected", "version": "n/a" } ] } ], "datePublic": "2011-10-27T00:00:00", "descriptions": [ { "lang": "en", "value": "The LiveData Service in CSWorks before 2.0.4115.1 allows remote attackers to cause a denial of service (service crash) via crafted TCP packets." } ], "problemTypes": [ { "descriptions": [ { "description": "n/a", "lang": "en", "type": "text" } ] } ], "providerMetadata": { "dateUpdated": "2017-08-28T12:57:01", "orgId": "ede6fdc4-6654-4307-a26d-3331c018e2ce", "shortName": "jpcert" }, "references": [ { "name": "JVNDB-2011-000095", "tags": [ "third-party-advisory", "x_refsource_JVNDB" ], "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2011-000095" }, { "tags": [ "x_refsource_CONFIRM" ], "url": "http://www.controlsystemworks.com/blogengine/post/CSWorks-2041151-security-release.aspx" }, { "name": "JVN#98649286", "tags": [ "third-party-advisory", "x_refsource_JVN" ], "url": "http://jvn.jp/en/jp/JVN98649286/index.html" }, { "name": "csworks-tcp-dos(71079)", "tags": [ "vdb-entry", "x_refsource_XF" ], "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/71079" }, { "name": "50458", "tags": [ "vdb-entry", "x_refsource_BID" ], "url": "http://www.securityfocus.com/bid/50458" }, { "tags": [ "x_refsource_CONFIRM" ], "url": "http://www.controlsystemworks.com/ProductHistory.aspx" }, { "name": "46625", "tags": [ "third-party-advisory", "x_refsource_SECUNIA" ], "url": "http://secunia.com/advisories/46625" } ], "x_legacyV4Record": { "CVE_data_meta": { "ASSIGNER": "vultures@jpcert.or.jp", "ID": "CVE-2011-3996", "STATE": "PUBLIC" }, "affects": { "vendor": { "vendor_data": [ { "product": { "product_data": [ { "product_name": "n/a", "version": { "version_data": [ { "version_value": "n/a" } ] } } ] }, "vendor_name": "n/a" } ] } }, "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": { "description_data": [ { "lang": "eng", "value": "The LiveData Service in CSWorks before 2.0.4115.1 allows remote attackers to cause a denial of service (service crash) via crafted TCP packets." } ] }, "problemtype": { "problemtype_data": [ { "description": [ { "lang": "eng", "value": "n/a" } ] } ] }, "references": { "reference_data": [ { "name": "JVNDB-2011-000095", "refsource": "JVNDB", "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2011-000095" }, { "name": "http://www.controlsystemworks.com/blogengine/post/CSWorks-2041151-security-release.aspx", "refsource": "CONFIRM", "url": "http://www.controlsystemworks.com/blogengine/post/CSWorks-2041151-security-release.aspx" }, { "name": "JVN#98649286", "refsource": "JVN", "url": "http://jvn.jp/en/jp/JVN98649286/index.html" }, { "name": "csworks-tcp-dos(71079)", "refsource": "XF", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/71079" }, { "name": "50458", "refsource": "BID", "url": "http://www.securityfocus.com/bid/50458" }, { "name": "http://www.controlsystemworks.com/ProductHistory.aspx", "refsource": "CONFIRM", "url": "http://www.controlsystemworks.com/ProductHistory.aspx" }, { "name": "46625", "refsource": "SECUNIA", "url": "http://secunia.com/advisories/46625" } ] } } } }, "cveMetadata": { "assignerOrgId": "ede6fdc4-6654-4307-a26d-3331c018e2ce", "assignerShortName": "jpcert", "cveId": "CVE-2011-3996", "datePublished": "2011-11-03T17:00:00", "dateReserved": "2011-10-05T00:00:00", "dateUpdated": "2024-08-06T23:53:32.545Z", "state": "PUBLISHED" }, "dataType": "CVE_RECORD", "dataVersion": "5.1" }
CVE-2014-2351 (GCVE-0-2014-2351)
Vulnerability from cvelistv5
Published
2014-05-20 10:00
Modified
2024-08-06 10:14
Severity ?
VLAI Severity ?
EPSS score ?
CWE
- n/a
Summary
SQL injection vulnerability in the LiveData service in CSWorks before 2.5.5233.0 allows remote attackers to execute arbitrary SQL commands via vectors related to pathnames contained in web API requests.
References
► | URL | Tags | |||||||||
---|---|---|---|---|---|---|---|---|---|---|---|
|
{ "containers": { "adp": [ { "providerMetadata": { "dateUpdated": "2024-08-06T10:14:25.131Z", "orgId": "af854a3a-2127-422b-91ae-364da2661108", "shortName": "CVE" }, "references": [ { "tags": [ "x_refsource_MISC", "x_transferred" ], "url": "http://ics-cert.us-cert.gov/advisories/ICSA-14-135-01" }, { "tags": [ "x_refsource_CONFIRM", "x_transferred" ], "url": "http://www.controlsystemworks.com/blogengine/post/2014/05/08/Important-CSWorks-security-release-2552330" }, { "name": "67427", "tags": [ "vdb-entry", "x_refsource_BID", "x_transferred" ], "url": "http://www.securityfocus.com/bid/67427" } ], "title": "CVE Program Container" } ], "cna": { "affected": [ { "product": "n/a", "vendor": "n/a", "versions": [ { "status": "affected", "version": "n/a" } ] } ], "datePublic": "2014-05-08T00:00:00", "descriptions": [ { "lang": "en", "value": "SQL injection vulnerability in the LiveData service in CSWorks before 2.5.5233.0 allows remote attackers to execute arbitrary SQL commands via vectors related to pathnames contained in web API requests." } ], "problemTypes": [ { "descriptions": [ { "description": "n/a", "lang": "en", "type": "text" } ] } ], "providerMetadata": { "dateUpdated": "2015-05-12T18:57:00", "orgId": "7d14cffa-0d7d-4270-9dc0-52cabd5a23a6", "shortName": "icscert" }, "references": [ { "tags": [ "x_refsource_MISC" ], "url": "http://ics-cert.us-cert.gov/advisories/ICSA-14-135-01" }, { "tags": [ "x_refsource_CONFIRM" ], "url": "http://www.controlsystemworks.com/blogengine/post/2014/05/08/Important-CSWorks-security-release-2552330" }, { "name": "67427", "tags": [ "vdb-entry", "x_refsource_BID" ], "url": "http://www.securityfocus.com/bid/67427" } ], "x_legacyV4Record": { "CVE_data_meta": { "ASSIGNER": "ics-cert@hq.dhs.gov", "ID": "CVE-2014-2351", "STATE": "PUBLIC" }, "affects": { "vendor": { "vendor_data": [ { "product": { "product_data": [ { "product_name": "n/a", "version": { "version_data": [ { "version_value": "n/a" } ] } } ] }, "vendor_name": "n/a" } ] } }, "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": { "description_data": [ { "lang": "eng", "value": "SQL injection vulnerability in the LiveData service in CSWorks before 2.5.5233.0 allows remote attackers to execute arbitrary SQL commands via vectors related to pathnames contained in web API requests." } ] }, "problemtype": { "problemtype_data": [ { "description": [ { "lang": "eng", "value": "n/a" } ] } ] }, "references": { "reference_data": [ { "name": "http://ics-cert.us-cert.gov/advisories/ICSA-14-135-01", "refsource": "MISC", "url": "http://ics-cert.us-cert.gov/advisories/ICSA-14-135-01" }, { "name": "http://www.controlsystemworks.com/blogengine/post/2014/05/08/Important-CSWorks-security-release-2552330", "refsource": "CONFIRM", "url": "http://www.controlsystemworks.com/blogengine/post/2014/05/08/Important-CSWorks-security-release-2552330" }, { "name": "67427", "refsource": "BID", "url": "http://www.securityfocus.com/bid/67427" } ] } } } }, "cveMetadata": { "assignerOrgId": "7d14cffa-0d7d-4270-9dc0-52cabd5a23a6", "assignerShortName": "icscert", "cveId": "CVE-2014-2351", "datePublished": "2014-05-20T10:00:00", "dateReserved": "2014-03-13T00:00:00", "dateUpdated": "2024-08-06T10:14:25.131Z", "state": "PUBLISHED" }, "dataType": "CVE_RECORD", "dataVersion": "5.1" }
Vulnerability from fkie_nvd
Published
2014-05-20 11:13
Modified
2025-04-12 10:46
Severity ?
Summary
SQL injection vulnerability in the LiveData service in CSWorks before 2.5.5233.0 allows remote attackers to execute arbitrary SQL commands via vectors related to pathnames contained in web API requests.
References
Impacted products
{ "configurations": [ { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:a:controlsystemworks:csworks:*:*:*:*:*:*:*:*", "matchCriteriaId": "9BE43F29-CC4E-403B-AED7-5B9D01027183", "versionEndIncluding": "2.5.5050.0", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.0.601.0:*:*:*:*:*:*:*", "matchCriteriaId": "E10DCB21-0871-48B4-973F-644D3D67452A", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.0.612.0:*:*:*:*:*:*:*", "matchCriteriaId": "B6480D5C-87DA-4932-B896-5BCB96BAE93F", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.0.623.0:*:*:*:*:*:*:*", "matchCriteriaId": "43512F0F-1A2B-40D6-B6D3-BDDA2EB8FE73", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.0.720.0:*:*:*:*:*:*:*", "matchCriteriaId": "0C20287C-9659-4785-B3E2-0F2384D1DF40", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.0.801.0:*:*:*:*:*:*:*", "matchCriteriaId": "C86ECDDB-3306-46AC-8BAA-40F5B2CF8B02", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.0.813.0:*:*:*:*:*:*:*", "matchCriteriaId": "C66BA50E-2BA9-4AF0-8EF8-5ACFB59F0ED4", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.0.901.0:*:*:*:*:*:*:*", "matchCriteriaId": "E06A8C5C-4E93-48C4-9693-E42A6E3C8EFE", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.0.3540.0:*:*:*:*:*:*:*", "matchCriteriaId": "C0A7A01C-5E87-42CB-B208-55D8AEF310F5", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.0.3560.0:*:*:*:*:*:*:*", "matchCriteriaId": "93461758-9E8E-4045-9843-312985E58150", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.0.3580.0:*:*:*:*:*:*:*", "matchCriteriaId": "802D62B8-079E-41AA-8780-15E28704CE1F", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.1.3600.0:*:*:*:*:*:*:*", "matchCriteriaId": "E3630EDC-A128-451B-BA13-0EEA227FA670", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.1.3674.0:*:*:*:*:*:*:*", "matchCriteriaId": "919FF97B-D940-4560-8F20-948A58699C33", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.1.3700.0:*:*:*:*:*:*:*", "matchCriteriaId": "09CB258D-FF10-4D7A-96DB-9311D64D62F5", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.2.3730.0:*:*:*:*:*:*:*", "matchCriteriaId": "55AE952B-1A64-492A-8624-449DCF7CDEA1", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.2.3800.0:*:*:*:*:*:*:*", "matchCriteriaId": "5DA92DB6-626B-4A2A-A784-E914F82592ED", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.4.3820.0:*:*:*:*:*:*:*", "matchCriteriaId": "C109412C-4905-4D4B-835D-E5763A71AFF0", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.4.3830.0:*:*:*:*:*:*:*", "matchCriteriaId": "1C094AEA-3025-4EB6-932D-1865A0997FC6", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.4.3850.0:*:*:*:*:*:*:*", "matchCriteriaId": "4F76281B-8C43-4A2F-B2F5-DAEC351C1F63", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.4.3860.0:*:*:*:*:*:*:*", "matchCriteriaId": "8084E967-B462-4B73-97E0-13A0C8B15372", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.4.3880.0:*:*:*:*:*:*:*", "matchCriteriaId": "8E230326-3DBC-47FD-AF9F-16DB53EB4BDD", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.4.3900.0:*:*:*:*:*:*:*", "matchCriteriaId": "2A0570DE-AC7D-4D45-BFEA-FEB4C9564989", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.4.4000.0:*:*:*:*:*:*:*", "matchCriteriaId": "D8EA92F7-D93A-4615-B9C9-745B0D49F6FD", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.7.4050.0:*:*:*:*:*:*:*", "matchCriteriaId": "C557E7C8-A9F5-4AC7-A79E-62812C80DC74", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.7.5000.0:*:*:*:*:*:*:*", "matchCriteriaId": "220EB778-E9BB-42B0-ACC5-7EF513D69A67", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:2.0.4115.0:*:*:*:*:*:*:*", "matchCriteriaId": "7B61DB2F-BB8F-4D9C-BA2E-21D89878787A", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:2.0.4115.1:*:*:*:*:*:*:*", "matchCriteriaId": "944FDBE0-FDE9-4511-BF60-722CDC8AB873", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:2.1.4386.0:*:*:*:*:*:*:*", "matchCriteriaId": "F426BBDB-7972-42F4-9406-9B3CFEA76856", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:2.1.4560.0:*:*:*:*:*:*:*", "matchCriteriaId": "40956134-8566-4298-BFB1-953183CBFC50", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:2.5.4770.0:*:*:*:*:*:*:*", "matchCriteriaId": "A2FFF797-2582-4830-A19E-7A2BA19587CF", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:2.5.4770.1:*:*:*:*:*:*:*", "matchCriteriaId": "A23BA16F-3C05-4604-BA06-E64696ACAD27", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:2.5.4912.0:*:*:*:*:*:*:*", "matchCriteriaId": "68A67326-3D29-407A-95F9-AA47A30B0944", "vulnerable": true } ], "negate": false, "operator": "OR" } ] } ], "cveTags": [], "descriptions": [ { "lang": "en", "value": "SQL injection vulnerability in the LiveData service in CSWorks before 2.5.5233.0 allows remote attackers to execute arbitrary SQL commands via vectors related to pathnames contained in web API requests." }, { "lang": "es", "value": "Vulnerabilidad de inyecci\u00f3n SQL en el servicio LiveData en CSWorks anterior a 2.5.5233.0 permite a atacantes remotos ejecutar comandos SQL arbitrarios a trav\u00e9s de vectores relacionados con nombres de rutas contenidos en solicitudes API web." } ], "id": "CVE-2014-2351", "lastModified": "2025-04-12T10:46:40.837", "metrics": { "cvssMetricV2": [ { "acInsufInfo": false, "baseSeverity": "HIGH", "cvssData": { "accessComplexity": "LOW", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 7.5, "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P", "version": "2.0" }, "exploitabilityScore": 10.0, "impactScore": 6.4, "obtainAllPrivilege": false, "obtainOtherPrivilege": false, "obtainUserPrivilege": false, "source": "nvd@nist.gov", "type": "Primary", "userInteractionRequired": false } ] }, "published": "2014-05-20T11:13:37.873", "references": [ { "source": "ics-cert@hq.dhs.gov", "tags": [ "US Government Resource" ], "url": "http://ics-cert.us-cert.gov/advisories/ICSA-14-135-01" }, { "source": "ics-cert@hq.dhs.gov", "tags": [ "Vendor Advisory" ], "url": "http://www.controlsystemworks.com/blogengine/post/2014/05/08/Important-CSWorks-security-release-2552330" }, { "source": "ics-cert@hq.dhs.gov", "url": "http://www.securityfocus.com/bid/67427" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "US Government Resource" ], "url": "http://ics-cert.us-cert.gov/advisories/ICSA-14-135-01" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Vendor Advisory" ], "url": "http://www.controlsystemworks.com/blogengine/post/2014/05/08/Important-CSWorks-security-release-2552330" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://www.securityfocus.com/bid/67427" } ], "sourceIdentifier": "ics-cert@hq.dhs.gov", "vulnStatus": "Deferred", "weaknesses": [ { "description": [ { "lang": "en", "value": "CWE-89" } ], "source": "nvd@nist.gov", "type": "Primary" } ] }
Vulnerability from fkie_nvd
Published
2011-11-03 17:55
Modified
2025-04-11 00:51
Severity ?
Summary
The LiveData Service in CSWorks before 2.0.4115.1 allows remote attackers to cause a denial of service (service crash) via crafted TCP packets.
References
Impacted products
Vendor | Product | Version | |
---|---|---|---|
controlsystemworks | csworks | * | |
controlsystemworks | csworks | 1.0.601.0 | |
controlsystemworks | csworks | 1.0.612.0 | |
controlsystemworks | csworks | 1.0.623.0 | |
controlsystemworks | csworks | 1.0.720.0 | |
controlsystemworks | csworks | 1.0.801.0 | |
controlsystemworks | csworks | 1.0.813.0 | |
controlsystemworks | csworks | 1.0.901.0 | |
controlsystemworks | csworks | 1.0.3540.0 | |
controlsystemworks | csworks | 1.0.3560.0 | |
controlsystemworks | csworks | 1.0.3580.0 | |
controlsystemworks | csworks | 1.1.3600.0 | |
controlsystemworks | csworks | 1.1.3674.0 | |
controlsystemworks | csworks | 1.1.3700.0 | |
controlsystemworks | csworks | 1.2.3730.0 | |
controlsystemworks | csworks | 1.2.3800.0 | |
controlsystemworks | csworks | 1.4.3820.0 | |
controlsystemworks | csworks | 1.4.3830.0 | |
controlsystemworks | csworks | 1.4.3850.0 | |
controlsystemworks | csworks | 1.4.3860.0 | |
controlsystemworks | csworks | 1.4.3880.0 | |
controlsystemworks | csworks | 1.4.3900.0 | |
controlsystemworks | csworks | 1.4.4000.0 | |
controlsystemworks | csworks | 1.7.4050.0 | |
controlsystemworks | csworks | 1.7.5000.0 |
{ "configurations": [ { "nodes": [ { "cpeMatch": [ { "criteria": "cpe:2.3:a:controlsystemworks:csworks:*:*:*:*:*:*:*:*", "matchCriteriaId": "F6C8804D-EDF4-420E-88F3-9CC7A6D08C03", "versionEndIncluding": "2.0.4115.0", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.0.601.0:*:*:*:*:*:*:*", "matchCriteriaId": "E10DCB21-0871-48B4-973F-644D3D67452A", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.0.612.0:*:*:*:*:*:*:*", "matchCriteriaId": "B6480D5C-87DA-4932-B896-5BCB96BAE93F", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.0.623.0:*:*:*:*:*:*:*", "matchCriteriaId": "43512F0F-1A2B-40D6-B6D3-BDDA2EB8FE73", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.0.720.0:*:*:*:*:*:*:*", "matchCriteriaId": "0C20287C-9659-4785-B3E2-0F2384D1DF40", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.0.801.0:*:*:*:*:*:*:*", "matchCriteriaId": "C86ECDDB-3306-46AC-8BAA-40F5B2CF8B02", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.0.813.0:*:*:*:*:*:*:*", "matchCriteriaId": "C66BA50E-2BA9-4AF0-8EF8-5ACFB59F0ED4", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.0.901.0:*:*:*:*:*:*:*", "matchCriteriaId": "E06A8C5C-4E93-48C4-9693-E42A6E3C8EFE", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.0.3540.0:*:*:*:*:*:*:*", "matchCriteriaId": "C0A7A01C-5E87-42CB-B208-55D8AEF310F5", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.0.3560.0:*:*:*:*:*:*:*", "matchCriteriaId": "93461758-9E8E-4045-9843-312985E58150", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.0.3580.0:*:*:*:*:*:*:*", "matchCriteriaId": "802D62B8-079E-41AA-8780-15E28704CE1F", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.1.3600.0:*:*:*:*:*:*:*", "matchCriteriaId": "E3630EDC-A128-451B-BA13-0EEA227FA670", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.1.3674.0:*:*:*:*:*:*:*", "matchCriteriaId": "919FF97B-D940-4560-8F20-948A58699C33", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.1.3700.0:*:*:*:*:*:*:*", "matchCriteriaId": "09CB258D-FF10-4D7A-96DB-9311D64D62F5", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.2.3730.0:*:*:*:*:*:*:*", "matchCriteriaId": "55AE952B-1A64-492A-8624-449DCF7CDEA1", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.2.3800.0:*:*:*:*:*:*:*", "matchCriteriaId": "5DA92DB6-626B-4A2A-A784-E914F82592ED", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.4.3820.0:*:*:*:*:*:*:*", "matchCriteriaId": "C109412C-4905-4D4B-835D-E5763A71AFF0", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.4.3830.0:*:*:*:*:*:*:*", "matchCriteriaId": "1C094AEA-3025-4EB6-932D-1865A0997FC6", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.4.3850.0:*:*:*:*:*:*:*", "matchCriteriaId": "4F76281B-8C43-4A2F-B2F5-DAEC351C1F63", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.4.3860.0:*:*:*:*:*:*:*", "matchCriteriaId": "8084E967-B462-4B73-97E0-13A0C8B15372", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.4.3880.0:*:*:*:*:*:*:*", "matchCriteriaId": "8E230326-3DBC-47FD-AF9F-16DB53EB4BDD", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.4.3900.0:*:*:*:*:*:*:*", "matchCriteriaId": "2A0570DE-AC7D-4D45-BFEA-FEB4C9564989", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.4.4000.0:*:*:*:*:*:*:*", "matchCriteriaId": "D8EA92F7-D93A-4615-B9C9-745B0D49F6FD", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.7.4050.0:*:*:*:*:*:*:*", "matchCriteriaId": "C557E7C8-A9F5-4AC7-A79E-62812C80DC74", "vulnerable": true }, { "criteria": "cpe:2.3:a:controlsystemworks:csworks:1.7.5000.0:*:*:*:*:*:*:*", "matchCriteriaId": "220EB778-E9BB-42B0-ACC5-7EF513D69A67", "vulnerable": true } ], "negate": false, "operator": "OR" } ] } ], "cveTags": [], "descriptions": [ { "lang": "en", "value": "The LiveData Service in CSWorks before 2.0.4115.1 allows remote attackers to cause a denial of service (service crash) via crafted TCP packets." }, { "lang": "es", "value": "El servicio LiveData en CSWorks anteriores a v2.0.4115.1 permite a atacantes remotos provocar una denegaci\u00f3n de servicio (service crash) a trav\u00e9s de paquetes TCP manipulados." } ], "id": "CVE-2011-3996", "lastModified": "2025-04-11T00:51:21.963", "metrics": { "cvssMetricV2": [ { "acInsufInfo": false, "baseSeverity": "MEDIUM", "cvssData": { "accessComplexity": "LOW", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "PARTIAL", "baseScore": 5.0, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:P", "version": "2.0" }, "exploitabilityScore": 10.0, "impactScore": 2.9, "obtainAllPrivilege": false, "obtainOtherPrivilege": false, "obtainUserPrivilege": false, "source": "nvd@nist.gov", "type": "Primary", "userInteractionRequired": false } ] }, "published": "2011-11-03T17:55:01.887", "references": [ { "source": "vultures@jpcert.or.jp", "url": "http://jvn.jp/en/jp/JVN98649286/index.html" }, { "source": "vultures@jpcert.or.jp", "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2011-000095" }, { "source": "vultures@jpcert.or.jp", "tags": [ "Vendor Advisory" ], "url": "http://secunia.com/advisories/46625" }, { "source": "vultures@jpcert.or.jp", "url": "http://www.controlsystemworks.com/ProductHistory.aspx" }, { "source": "vultures@jpcert.or.jp", "tags": [ "Vendor Advisory" ], "url": "http://www.controlsystemworks.com/blogengine/post/CSWorks-2041151-security-release.aspx" }, { "source": "vultures@jpcert.or.jp", "url": "http://www.securityfocus.com/bid/50458" }, { "source": "vultures@jpcert.or.jp", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/71079" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://jvn.jp/en/jp/JVN98649286/index.html" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2011-000095" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Vendor Advisory" ], "url": "http://secunia.com/advisories/46625" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://www.controlsystemworks.com/ProductHistory.aspx" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Vendor Advisory" ], "url": "http://www.controlsystemworks.com/blogengine/post/CSWorks-2041151-security-release.aspx" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://www.securityfocus.com/bid/50458" }, { "source": "af854a3a-2127-422b-91ae-364da2661108", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/71079" } ], "sourceIdentifier": "vultures@jpcert.or.jp", "vulnStatus": "Deferred", "weaknesses": [ { "description": [ { "lang": "en", "value": "CWE-399" } ], "source": "nvd@nist.gov", "type": "Primary" } ] }