CVE-2017-5177
CVE-2017-5177
Vexday Risk Score
28Low
SSVC decision (CISA)
Attend
PoC available → attend closely
CVSS —EPSS 17.7%KEV nãoPoC públicaNuclei —Metasploit —Patch —
Lifecycle
19 May 2017Published on NVD
13 Sep 2017Public PoC
Recommendation: Plan a near-term fix — a public PoC already exists.
A Stack Buffer Overflow issue was discovered in VIPA Controls WinPLC7 5.0.45.5921 and prior. A stack-based buffer overflow vulnerability has been identified, where an attacker with a specially crafted packet could overflow the fixed length buffer. This could allow remote code execution.
Affected products
n/a · VIPA Controls WinPLC7public PoCs found — 2
cve_referencewww.exploit-db.com/exploits/42693/unverifiedexploitdbwww.exploit-db.com/exploits/42693unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →