A remote attacker could send a carefully crafted packet in InduSoft Web Studio v8.1 and prior versions, and/or InTouch Machine Edition 2017 v8.1 and prior versions during a tag, alarm, or event related action such as read and write, which may allow remote code execution.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: icscert

Published: 2018-04-06T00:00:00

Updated: 2018-04-24T09:57:01

Reserved: 2018-03-20T00:00:00


Link: CVE-2018-8840

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2018-04-18T20:29:00.920

Modified: 2019-10-09T23:42:55.707


Link: CVE-2018-8840

JSON object: View

cve-icon Redhat Information

No data.