BugTraq
Vulnerabilities in some SCADA server softwares Mar 21 2011 04:16PM
Luigi Auriemma (aluigi autistici org) (1 replies)
Re: Vulnerabilities in some SCADA server softwares Mar 21 2011 05:11PM
J. Oquendo (sil infiltrated net) (4 replies)
On 3/21/2011 12:16 PM, Luigi Auriemma wrote:
> The following are almost all the vulnerabilities I found for a quick
> experiment some months ago in certain well known server-side SCADA
> softwares still vulnerable in this moment.

At what point in time did you try contacting any of the vendors for
these issues?

Analogy: Car owner has his car speed up ending up in almost near
catastrophe. Car owner goes to media outlets condemning the
manufacturer: "How could you be so reckless! Thousand of lives..."
Reality: Car manufacturer was never made aware of the issue. How do you
propose a manufacturer fix an issue?

Where in any of your advisories did you take the time to let a company
know: "hey you guys have some potential issues, here they are!!!"

--

=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+=+
J. Oquendo
SGFA, SGFE, C|EH, CNDA, CHFI, OSCP, CPT, RWSP

"It takes 20 years to build a reputation and five minutes to
ruin it. If you think about that, you'll do things
differently." - Warren Buffett

42B0 5A53 6505 6638 44BB 3943 2BF7 D83F 210A 95AF
http://pgp.mit.edu:11371/pks/lookup?op=get&search=0x2BF7D83F210A95AF

[ reply ]
Re: Vulnerabilities in some SCADA server softwares Mar 23 2011 08:28PM
Pavel Kankovsky (peak argo troja mff cuni cz)
Re: Vulnerabilities in some SCADA server softwares Mar 23 2011 03:27PM
Kent Borg (kentborg borg org) (1 replies)
Re: Vulnerabilities in some SCADA server softwares Mar 23 2011 08:10PM
J. Oquendo (sil infiltrated net)
Re: Vulnerabilities in some SCADA server softwares Mar 22 2011 09:24PM
Michal Zalewski (lcamtuf coredump cx) (2 replies)
Re: Vulnerabilities in some SCADA server softwares Mar 23 2011 02:46PM
R Michael Williams (rmwstealth comcast net) (1 replies)
Re: Vulnerabilities in some SCADA server softwares Mar 23 2011 04:52PM
Michal Zalewski (lcamtuf coredump cx)
RE: Vulnerabilities in some SCADA server softwares Mar 23 2011 02:43PM
Jim Harrison (Jim isatools org) (1 replies)
Re: Vulnerabilities in some SCADA server softwares Mar 23 2011 04:54PM
Luigi Auriemma (aluigi autistici org)
Re: Vulnerabilities in some SCADA server softwares Mar 21 2011 08:02PM
Luigi Auriemma (aluigi autistici org)


 

Privacy Statement
Copyright 2010, SecurityFocus