PoC Index

CVE-2011-2963

HIGH 10.0EPSS 7.6%

TCPUploadServer.exe in Progea Movicon 11.2 before Build 1084 does not require authentication for critical functions, which allows remote attackers to obtain sensitive information, delete files, execute arbitrary programs, or cause a denial of service (crash) via a crafted packet to TCP port 10651.

CVSS v2.0
10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS
7.62% chance of exploitation in the next 30 days, 94th percentile
Published
2011-07-29
Updated
2024-09-16

Proof-of-concept exploits (1)

ExploitDB entries (1)

References

Related