Rewterz
Rewterz Threat Alert – Ursnif Distributed Through Reply-Chain Attacks to Look Legitimate
October 18, 2019
Rewterz
Rewterz Threat ALert – Continued Activity of Kimsuky Group – IOC’s
October 21, 2019

Rewterz Threat Advisory – CVE-2019-13537 – AVEVA Vijeo Citect and Citect SCADA Server Side Crash Vulnerability

Severity

Medium

Analysis Summary

The IEC870IP driver for Vijeo Citect and Citect SCADA has a buffer overflow that could cause a server-side crash. This vulnerability impacts only the IEC870IP driver and not the core Vijeo Citect or Citect SCADA software.

Impact

Server side crash

Affected Vendors

AVEVA

Affected Products

IEC870IP driver v4.14.02 and prior

Remediation

Update to version:

IEC870IP driver v4.15.00