
CVE-2024-34057
https://notcve.org/view.php?id=CVE-2024-34057
18 Sep 2024 — Triangle Microworks TMW IEC 61850 Client source code libraries before 12.2.0 lack a buffer size check when processing received messages. The resulting buffer overflow can cause a crash, resulting in a denial of service. • https://trianglemicroworks.com/products/source-code-libraries/iec-61850-scl-pages/what%27s-new • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVE-2023-2187
https://notcve.org/view.php?id=CVE-2023-2187
07 Jun 2023 — On Triangle MicroWorks' SCADA Data Gateway version <= v5.01.03, an unauthenticated attacker can send broadcast events to any user via the WebMonitor.An unauthenticated user can use this vulnerability to forcefully log out of any currently logged-in user by sending a "password change event". Furthermore, an attacker could use this vulnerability to spam the logged-in user with false events. • https://www.trellix.com/en-us/about/newsroom/stories/research/industrial-and-manufacturing-cves.html • CWE-306: Missing Authentication for Critical Function •

CVE-2023-2186
https://notcve.org/view.php?id=CVE-2023-2186
07 Jun 2023 — On Triangle MicroWorks' SCADA Data Gateway version <= v5.01.03, an unauthenticated attacker can send a specially crafted broadcast message including format string characters to the SCADA Data Gateway to perform unrestricted memory reads.An unauthenticated user can use this format string vulnerability to repeatedly crash the GTWWebMonitor.exe process to DoS the Web Monitor. Furthermore, an authenticated user can leverage this vulnerability to leak memory from the GTWWebMonitor.exe process. This could be leve... • https://www.trellix.com/en-us/about/newsroom/stories/research/industrial-and-manufacturing-cves.html • CWE-134: Use of Externally-Controlled Format String •

CVE-2022-38138
https://notcve.org/view.php?id=CVE-2022-38138
11 Oct 2022 — The Triangle Microworks IEC 61850 Library (Any client or server using the C language library with a version number of 11.2.0 or earlier and any client or server using the C++, C#, or Java language library with a version number of 5.0.1 or earlier) and 60870-6 (ICCP/TASE.2) Library (Any client or server using a C++ language library with a version number of 4.4.3 or earlier) are vulnerable to access given to a small number of uninitialized pointers within their code. This could allow an attacker to target any... • https://www.cisa.gov/uscert/ics/advisories/icsa-22-249-01 • CWE-824: Access of Uninitialized Pointer •

CVE-2020-6996
https://notcve.org/view.php?id=CVE-2020-6996
15 Apr 2020 — Triangle MicroWorks DNP3 Outstation LibrariesDNP3 Outstation .NET Protocol components and DNP3 Outstation ANSI C source code libraries are affected:3.16.00 through 3.25.01. A specially crafted message may cause a stack-based buffer overflow. Authentication is not required to exploit this vulnerability. Librerías de Triangle MicroWorks DNP3 Outstation Los componentes del Protocolo .NET Outstation DNP3 y las bibliotecas de código fuente ANSI C de DNP3 Outstation se ven afectadas: 3.16.00 a 3.25.01. Un mensaje... • https://www.us-cert.gov/ics/advisories/icsa-20-105-02 • CWE-121: Stack-based Buffer Overflow CWE-787: Out-of-bounds Write •

CVE-2020-10611 – Triangle MicroWorks SCADA Data Gateway DNP3 Type Confusion Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2020-10611
15 Apr 2020 — Triangle MicroWorks SCADA Data Gateway 3.02.0697 through 4.0.122, 2.41.0213 through 4.0.122 allows remote attackers to execute arbitrary code due to the lack of proper validation of user-supplied data, which can result in a type confusion condition. Authentication is not required to exploit this vulnerability. Only applicable to installations using DNP3 Data Sets. Triangle MicroWorks SCADA Data Gateway versiones 3.02.0697 hasta 4.0.122, versiones 2.41.0213 hasta 4.0.122, permite a atacantes remotos ejecutar... • https://www.us-cert.gov/ics/advisories/icsa-20-105-03 • CWE-843: Access of Resource Using Incompatible Type ('Type Confusion') •

CVE-2020-10613 – Triangle MicroWorks SCADA Data Gateway DNP3 Out-Of-Bounds Read Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2020-10613
15 Apr 2020 — Triangle MicroWorks SCADA Data Gateway 3.02.0697 through 4.0.122, 2.41.0213 through 4.0.122 allows remote attackers to disclose sensitive information due to the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated structure. Authentication is not required to exploit this vulnerability. Only applicable to installations using DNP3 Data Sets. Triangle MicroWorks SCADA Data Gateway versiones 3.02.0697 hasta 4.0.122, versiones 2.41.0213 hasta 4.0.122, permite a... • https://www.us-cert.gov/ics/advisories/icsa-20-105-03 • CWE-125: Out-of-bounds Read •

CVE-2020-10615 – Triangle Microworks SCADA Data Gateway DNP3 GET_FILE_INFO Stack-based Buffer Overflow Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2020-10615
15 Apr 2020 — Triangle MicroWorks SCADA Data Gateway 3.02.0697 through 4.0.122, 2.41.0213 through 4.0.122 allows remote attackers cause a denial-of-service condition due to a lack of proper validation of the length of user-supplied data, prior to copying it to a fixed-length stack-based buffer. Authentication is not required to exploit this vulnerability. Triangle MicroWorks SCADA Data Gateway versiones 3.02.0697 hasta 4.0.122, versiones 2.41.0213 hasta 4.0.122, permite a atacantes remotos causar una condición de denegac... • https://www.us-cert.gov/ics/advisories/icsa-20-105-03 • CWE-121: Stack-based Buffer Overflow CWE-787: Out-of-bounds Write •

CVE-2014-2343
https://notcve.org/view.php?id=CVE-2014-2343
30 May 2014 — Triangle MicroWorks SCADA Data Gateway before 3.00.0635 allows physically proximate attackers to cause a denial of service (excessive data processing) via a crafted DNP request over a serial line. Triangle MicroWorks SCADA Data Gateway anterior a 3.00.0635 permite a atacantes físicamente próximos causar una denegación de servicio (procesamiento de datos excesivo) a través de una solicitud DNP manipulada sobre una línea de serie. • http://ics-cert.us-cert.gov/advisories/ICSA-14-149-01 • CWE-20: Improper Input Validation •

CVE-2014-2342
https://notcve.org/view.php?id=CVE-2014-2342
30 May 2014 — Triangle MicroWorks SCADA Data Gateway before 3.00.0635 allows remote attackers to cause a denial of service (excessive data processing) via a crafted DNP3 packet. Triangle MicroWorks SCADA Data Gateway anterior a 3.00.0635 permite a atacantes remotos causar una denegación de servicio (procesamiento de datos excesivo) a través de una paquete DNP3 manipulado. • http://ics-cert.us-cert.gov/advisories/ICSA-14-149-01 • CWE-20: Improper Input Validation •