1.2 KiB
1.2 KiB
CVE-2015-7599
Description
Integer overflow in the _authenticate function in svc_auth.c in Wind River VxWorks 5.5 through 6.9.4.1, when the Remote Procedure Call (RPC) protocol is enabled, allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a username and password.
POC
Reference
Github
- https://github.com/67626d/ICS
- https://github.com/ARPSyndicate/cvemon
- https://github.com/MiniGh/gh_isf
- https://github.com/Xcod3bughunt3r/ISF-ICSSploit
- https://github.com/dark-lbp/isf
- https://github.com/likekabin/isf_Industrial-Control-System-Exploitation-Framework-
- https://github.com/likescam/isf_Industrial-Control-System-Exploitation-Framework-
- https://github.com/mrhenrike/OT-Exploitation-Framework
- https://github.com/snskiff/isf
- https://github.com/xjforfuture/isf