← Vulnerability feed

Vulnerability record · CVE-2011-1565 · published 5 April 2011

CVE-2011-1565: IGSS SCADA Data Server Directory Traversal via TCP Port 12401

77t · Igss

IGSSdataServer.exe in 7-Technologies IGSS 9.00.00.11063 and earlier contains a directory traversal flaw (CWE-22) that lets remote attackers read, create, or write arbitrary files using ..\ sequences sent to TCP port 12401. Because the affected component is a SCADA data server, successful exploitation can compromise both data confidentiality and integrity on industrial control system hosts.

10.0 CVSS 2.0 High EPSS 64% · top 0.8% CWE-22 · Path traversal
10.0CVSS 2.0 base score
64%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
14References, 6 tagged exploit
16 Jun 2026Last modified by NVD

Description

Directory traversal vulnerability in IGSSdataServer.exe 9.00.00.11063 and earlier in 7-Technologies Interactive Graphical SCADA System (IGSS) allows remote attackers to (1) read (opcode 0x3) or (2) create or write (opcode 0x2) arbitrary files via ..\ (dot dot backslash) sequences to TCP port 12401.

AV:N/AC:L/Au:N/C:C/I:C/A:C

Automated analysis

Generated by VULONE's analysis model from the NVD record, CISA KEV and EPSS data on 19 September 2026. Confidence: high.

critical priorityUnauthenticated remote file read/write against a SCADA server with public exploits and very high EPSS probability makes this a critical exposure for any reachable IGSS deployment.

What it is

IGSSdataServer.exe in 7-Technologies IGSS 9.00.00.11063 and earlier contains a directory traversal flaw (CWE-22) that lets remote attackers read, create, or write arbitrary files using ..\ sequences sent to TCP port 12401. Because the affected component is a SCADA data server, successful exploitation can compromise both data confidentiality and integrity on industrial control system hosts.

Impact

An unauthenticated attacker can read arbitrary files from the host and create or overwrite arbitrary files, which can expose sensitive configuration or data and potentially enable further compromise through file writes. The CVSS 2.0 vector rates confidentiality, integrity, and availability impact as complete.

Attack surface

The flaw is reachable over the network via TCP port 12401 using crafted opcodes (0x3 for read, 0x2 for create/write) containing ..\ traversal sequences. No authentication or user interaction is required per the CVSS vector (AV:N/AC:L/Au:N).

Exploitation

Public exploit references are present (Exploit-DB, SecurityFocus, aluigi.org advisory), and EPSS indicates a high 30-day exploitation probability (0.64063, 99.187th percentile), though the CVE is not listed in CISA KEV.

What to do

  • Apply the vendor patch or upgrade IGSS to a version later than 9.00.00.11063 as directed by 7-Technologies/Schneider Electric advisories.
  • Restrict network access to TCP port 12401 to trusted engineering and control hosts using firewall or ACL rules.
  • Segment the IGSS data server from general IT and untrusted networks to limit reachable attack paths.
  • Monitor and validate file integrity on IGSS hosts to detect unauthorized file creation or modification.
  • If patching is not immediately possible, consider compensating controls such as application allowlisting and strict egress/ingress filtering.

Detection

  • Inspect network traffic to TCP port 12401 for opcodes 0x2 or 0x3 containing ..\ or ..%5c traversal sequences.
  • Monitor file system changes on IGSS hosts for unexpected file creation or modification in application and system directories.
  • Review IDS/IPS signatures and logs for known IGSS traversal exploit patterns and alerts tied to port 12401.
  • Correlate unusual outbound or lateral connections from IGSS hosts with file access anomalies.

This assessment is produced automatically and is not human-reviewed. Verify against the vendor advisory before acting on it.

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2011-1565 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2011-29597t igss memory buffer overflow vulnerabilityStack-based buffer overflow in the Open Database Connectivity (ODBC) service (Odbcixv9se.exe) in 7-Technologies Interactive Graphical SCADA System (I…EPSS 6.9%10.0CVE-2011-22147t igss vulnerabilityUnspecified vulnerability in the Open Database Connectivity (ODBC) component in 7T Interactive Graphical SCADA System (IGSS) before 9.0.0.11143 allow…EPSS 4.7%10.0CVE-2011-1566IGSS dc.exe directory traversal allows remote code executionThe dc.exe component of 7-Technologies IGSS (version 9.00.00.11059 and earlier) is vulnerable to directory traversal via ..\ sequences embedded in op…EPSS 67%analysed10.0CVE-2011-1567IGSS IGSSdataServer.exe stack buffer overflow via crafted opcodesIGSSdataServer.exe in 7-Technologies IGSS 9.00.00.11063 and earlier contains multiple stack-based buffer overflows reachable through crafted commands…EPSS 70%analysed10.0CVE-2011-15687t igss vulnerabilityFormat string vulnerability in the logText function in shmemmgr9.dll in IGSSdataServer.exe 9.00.00.11074, and 9.00.00.11063 and earlier, in 7-Technol…EPSS 19%9.3CVE-2011-40537t igss vulnerabilityUntrusted search path vulnerability in 7-Technologies (7T) Interactive Graphical SCADA System (IGSS) before 9.0.0.11291 allows local users to gain pr…EPSS 1.5%7.5CVE-2011-45377t igss memory buffer overflow vulnerabilityMultiple buffer overflows in 7-Technologies (7T) Interactive Graphical SCADA System (IGSS) 9.0.0.11355 and earlier allow remote attackers to execute …EPSS 4.5%5.0CVE-2011-40507t igss memory buffer overflow vulnerabilityBuffer overflow in 7-Technologies (7T) Interactive Graphical SCADA System (IGSS) 9.0.0.11200 allows remote attackers to cause a denial of service via…EPSS 20%

Source: NIST National Vulnerability Database (record CVE-2011-1565), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.