VulnerabilityModified
CVE-2014-5429
DNP Master Driver 3.02 and earlier in Elipse SCADA 2.29 build 141 and earlier, E3 1.0 through 4.6, and Elipse Power 1.0 through 4.6 allows remote attackers to cause a denial of service (CPU consumption) via malformed packets.
MEDIUM 5.0EPSS 1.36%
Does this matter?
Lower severity and a low EPSS score (1.36%). Track it; it rarely justifies an emergency change on its own.
Description
DNP Master Driver 3.02 and earlier in Elipse SCADA 2.29 build 141 and earlier, E3 1.0 through 4.6, and Elipse Power 1.0 through 4.6 allows remote attackers to cause a denial of service (CPU consumption) via malformed packets.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
- EPSS
- 1.36% probability · 70th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-399
- Affected
- elipse/scada · elipse/power · elipse/e3
- Source
- ics-cert@hq.dhs.gov
References
- http://ics-cert.us-cert.gov/advisories/ICSA-14-303-02US Government Resource
- http://ics-cert.us-cert.gov/advisories/ICSA-14-303-02US Government Resource
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.