cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2021-22709,https://securityvulnerability.io/vulnerability/CVE-2021-22709,Improper Memory Buffer Restriction in Schneider Electric SCADA System,"A vulnerability exists in the Interactive Graphical SCADA System (IGSS) Definition, specifically in the Def.exe executable, allowing for improper access controls within memory operations. This can lead to severe risks, including potential data loss and the possibility of remote code execution when an attacker successfully imports a malicious Configuration Group File (CGF) into the system. Users of IGSS versions V15.0.0.21041 and earlier are encouraged to evaluate the implications of this vulnerability on their operational security.",Schneider Electric,Interactive Graphical Scada System (igss) Definition (def.exe) V15.0.0.21041 And Prior,7.8,HIGH,0.004470000043511391,false,,false,false,false,,,false,false,,2021-03-11T20:27:13.000Z,0 CVE-2021-22710,https://securityvulnerability.io/vulnerability/CVE-2021-22710,Remote Code Execution Vulnerability in Interactive Graphical SCADA System by Schneider Electric,"A vulnerability exists in the Interactive Graphical SCADA System (IGSS) Definition which allows remote attackers to execute arbitrary code. This issue arises when a malicious Configuration Group File (CGF) is imported into the IGSS Definition, potentially leading to unauthorized access and control over the system. Protecting against this vulnerability is essential for maintaining the integrity and security of industrial control systems.",Schneider Electric,Interactive Graphical Scada System (igss) Definition (def.exe) V15.0.0.21041 And Prior,7.8,HIGH,0.004470000043511391,false,,false,false,false,,,false,false,,2021-03-11T20:26:02.000Z,0 CVE-2021-22712,https://securityvulnerability.io/vulnerability/CVE-2021-22712,Improper Memory Buffer Operation in Schneider Electric IGSS Definition,"A critical vulnerability exists in Schneider Electric's Interactive Graphical SCADA System (IGSS) Definition, allowing for arbitrary read and write operations. This issue arises from an unchecked pointer address when importing malicious Configuration Group File (CGF) files. Consequently, attackers may exploit this weakness to manipulate data and potentially compromise system integrity, emphasizing the need for prompt mitigations and security updates.",Schneider Electric,Interactive Graphical Scada System (igss) Definition (def.exe) V15.0.0.21041 And Prior,7.8,HIGH,0.0010000000474974513,false,,false,false,false,,,false,false,,2021-03-11T20:25:07.000Z,0 CVE-2021-22711,https://securityvulnerability.io/vulnerability/CVE-2021-22711,Improper Buffer Handling in Interactive Graphical SCADA System by Schneider Electric,"A vulnerability exists in Schneider Electric's Interactive Graphical SCADA System (IGSS) that could allow an attacker to manipulate memory through the improper handling of buffer limits. This issue arises when a malicious Configuration Group File (CGF) is imported, as the system lacks adequate validation of input data, potentially leading to arbitrary read or write operations. Users of versions V15.0.0.21041 and earlier are particularly at risk and should review relevant security advisories to mitigate potential exploitation.",Schneider Electric,Interactive Graphical Scada System (igss) Definition (def.exe) V15.0.0.21041 And Prior,7.8,HIGH,0.0010000000474974513,false,,false,false,false,,,false,false,,2021-03-11T20:23:16.000Z,0