CVE-2013-2784
Severity CVSS v4.0:
Pending analysis
Type:
CWE-310
Cryptographic Issues
Publication date:
10/07/2013
Last modified:
11/04/2025
Description
Triangle Research International (aka Tri) Nano-10 PLC devices with firmware before r81 use an incorrect algorithm for bounds checking of data in Modbus/TCP packets, which allows remote attackers to cause a denial of service (networking outage) via a crafted packet to TCP port 502.
Impact
Base Score 2.0
7.80
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:triplc:nano-10_plc_firmware:*:*:*:*:*:*:*:* | r80 (including) | |
cpe:2.3:h:triplc:nano-10_plc:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page