CVE-2014-0753

high
Published 2014-01-21 · Modified 2026-04-29
CVSS v3
CVSS v2
7.8
VIR risk
7.8

Description

Stack-based buffer overflow in the SCADA server in Ecava IntegraXor before 4.1.4390 allows remote attackers to cause a denial of service (system crash) by triggering access to DLL code located in the IntegraXor directory.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: ics-cert@hq.dhs.gov — http://www.integraxor.com/blog/buffer-overflow-vulnerability-note/

Application impact

VendorProductVersionsFixed
ecavaintegraxor{"endIncluding":"4.1.4380"}
ecavaintegraxor3.5.3900.5
ecavaintegraxor3.5.3900.10
ecavaintegraxor3.6.4000.0
ecavaintegraxor3.60.4061
ecavaintegraxor3.71
ecavaintegraxor3.71.4200
ecavaintegraxor3.72
ecavaintegraxor4.00
ecavaintegraxor4.1
ecavaintegraxor4.1.4360
ecavaintegraxor4.1.4369

References

CWEs

CWE-121 CWE-119

Verify integrity in audit chain (admin only). AS-IS.