📦

intouch_2014

Vendor: aveva

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 1 Remote Access
Total CVEs 1 Total Indexed
Avg. EPSS 5.43% Exploit Prob.
Latest CVE CVE-2018-10628 Jul 24

Security Vulnerability Index

Page 1 / 1
9.8 CVSS

AVEVA InTouch 2014 R2 SP1 and prior, InTouch 2017, InTouch 2017 Update 1, and InTouch 2017 Update 2 allow an unauthenticated user to send a specially crafted packet that could overflow the buffer on a locale not using a dot floating point separator. Exploitation could allow remote code execution under the privileges of the InTouch View process.

EPSS: 5.43%