#VU48525 Out-of-bounds write in IGSS SCADA - CVE-2020-7551
Published: November 18, 2020 / Updated: February 3, 2021
IGSS SCADA
Schneider Electric
Description
The vulnerability allows a remote attacker to compromise vulnerable system.
The vulnerability exists due to a boundary error when a malicious CGF (Configuration Group File) is imported to IGSS Definition. A remote attacker can trigger out-of-bounds write and execute arbitrary code on the target system.