
CVE-2023-2187
https://notcve.org/view.php?id=CVE-2023-2187
07 Jun 2023 — On Triangle MicroWorks' SCADA Data Gateway version <= v5.01.03, an unauthenticated attacker can send broadcast events to any user via the WebMonitor.An unauthenticated user can use this vulnerability to forcefully log out of any currently logged-in user by sending a "password change event". Furthermore, an attacker could use this vulnerability to spam the logged-in user with false events. • https://www.trellix.com/en-us/about/newsroom/stories/research/industrial-and-manufacturing-cves.html • CWE-306: Missing Authentication for Critical Function •

CVE-2023-2186
https://notcve.org/view.php?id=CVE-2023-2186
07 Jun 2023 — On Triangle MicroWorks' SCADA Data Gateway version <= v5.01.03, an unauthenticated attacker can send a specially crafted broadcast message including format string characters to the SCADA Data Gateway to perform unrestricted memory reads.An unauthenticated user can use this format string vulnerability to repeatedly crash the GTWWebMonitor.exe process to DoS the Web Monitor. Furthermore, an authenticated user can leverage this vulnerability to leak memory from the GTWWebMonitor.exe process. This could be leve... • https://www.trellix.com/en-us/about/newsroom/stories/research/industrial-and-manufacturing-cves.html • CWE-134: Use of Externally-Controlled Format String •

CVE-2020-10611 – Triangle MicroWorks SCADA Data Gateway DNP3 Type Confusion Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2020-10611
15 Apr 2020 — Triangle MicroWorks SCADA Data Gateway 3.02.0697 through 4.0.122, 2.41.0213 through 4.0.122 allows remote attackers to execute arbitrary code due to the lack of proper validation of user-supplied data, which can result in a type confusion condition. Authentication is not required to exploit this vulnerability. Only applicable to installations using DNP3 Data Sets. Triangle MicroWorks SCADA Data Gateway versiones 3.02.0697 hasta 4.0.122, versiones 2.41.0213 hasta 4.0.122, permite a atacantes remotos ejecutar... • https://www.us-cert.gov/ics/advisories/icsa-20-105-03 • CWE-843: Access of Resource Using Incompatible Type ('Type Confusion') •

CVE-2020-10613 – Triangle MicroWorks SCADA Data Gateway DNP3 Out-Of-Bounds Read Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2020-10613
15 Apr 2020 — Triangle MicroWorks SCADA Data Gateway 3.02.0697 through 4.0.122, 2.41.0213 through 4.0.122 allows remote attackers to disclose sensitive information due to the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated structure. Authentication is not required to exploit this vulnerability. Only applicable to installations using DNP3 Data Sets. Triangle MicroWorks SCADA Data Gateway versiones 3.02.0697 hasta 4.0.122, versiones 2.41.0213 hasta 4.0.122, permite a... • https://www.us-cert.gov/ics/advisories/icsa-20-105-03 • CWE-125: Out-of-bounds Read •

CVE-2020-10615 – Triangle Microworks SCADA Data Gateway DNP3 GET_FILE_INFO Stack-based Buffer Overflow Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2020-10615
15 Apr 2020 — Triangle MicroWorks SCADA Data Gateway 3.02.0697 through 4.0.122, 2.41.0213 through 4.0.122 allows remote attackers cause a denial-of-service condition due to a lack of proper validation of the length of user-supplied data, prior to copying it to a fixed-length stack-based buffer. Authentication is not required to exploit this vulnerability. Triangle MicroWorks SCADA Data Gateway versiones 3.02.0697 hasta 4.0.122, versiones 2.41.0213 hasta 4.0.122, permite a atacantes remotos causar una condición de denegac... • https://www.us-cert.gov/ics/advisories/icsa-20-105-03 • CWE-121: Stack-based Buffer Overflow CWE-787: Out-of-bounds Write •

CVE-2014-2343
https://notcve.org/view.php?id=CVE-2014-2343
30 May 2014 — Triangle MicroWorks SCADA Data Gateway before 3.00.0635 allows physically proximate attackers to cause a denial of service (excessive data processing) via a crafted DNP request over a serial line. Triangle MicroWorks SCADA Data Gateway anterior a 3.00.0635 permite a atacantes físicamente próximos causar una denegación de servicio (procesamiento de datos excesivo) a través de una solicitud DNP manipulada sobre una línea de serie. • http://ics-cert.us-cert.gov/advisories/ICSA-14-149-01 • CWE-20: Improper Input Validation •

CVE-2014-2342
https://notcve.org/view.php?id=CVE-2014-2342
30 May 2014 — Triangle MicroWorks SCADA Data Gateway before 3.00.0635 allows remote attackers to cause a denial of service (excessive data processing) via a crafted DNP3 packet. Triangle MicroWorks SCADA Data Gateway anterior a 3.00.0635 permite a atacantes remotos causar una denegación de servicio (procesamiento de datos excesivo) a través de una paquete DNP3 manipulado. • http://ics-cert.us-cert.gov/advisories/ICSA-14-149-01 • CWE-20: Improper Input Validation •

CVE-2013-2794
https://notcve.org/view.php?id=CVE-2013-2794
09 Sep 2013 — Triangle MicroWorks SCADA Data Gateway 2.50.0309 through 3.00.0616, DNP3 .NET Protocol components 3.06.0.171 through 3.15.0.369, and DNP3 C libraries 3.06.0000 through 3.15.0000 allow physically proximate attackers to cause a denial of service (infinite loop) via crafted input over a serial line. Triangle MicroWorks SCADA Data Gateway 2.50.0309 hasta 3.00.0616, Componentes de protocolo DNP3 .NET 3.06.0.171 hasta 3.15.0.369, y librerías C DNP3 3.06.0000 hasta 3.15.0000 permiten a un atacante con acceso físic... • http://ics-cert.us-cert.gov/advisories/ICSA-13-240-01 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2013-2793
https://notcve.org/view.php?id=CVE-2013-2793
09 Sep 2013 — Triangle MicroWorks SCADA Data Gateway 2.50.0309 through 3.00.0616, DNP3 .NET Protocol components 3.06.0.171 through 3.15.0.369, and DNP3 C libraries 3.06.0000 through 3.15.0000 allow remote attackers to cause a denial of service (infinite loop) via a crafted DNP3 TCP packet. Triangle MicroWorks SCADA Data Gateway 2.50.0309 hasta 3.00.0616 , Componentes de Protocolo DNP3 .NET 3.06.0.171 hasta 3.15.0.369 y Librerías C DNP3 3.06.0000 hasta 3.15.0000 permiten a un atacante remoto causar una denegación de servi... • http://ics-cert.us-cert.gov/advisories/ICSA-13-240-01 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •