The WDB target agent debug service in Wind River VxWorks...
Vulnerability Description
The WDB target agent debug service in Wind River VxWorks 6.x, 5.x, and earlier, as used on the Rockwell Automation 1756-ENBT series A with firmware 3.2.6 and 3.6.1 and other products, allows remote attackers to read or modify arbitrary memory locations, perform function calls, or manage tasks via requests to UDP port 17185, a related issue to CVE-2005-3804.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2010-2965
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.kb.cert.org/vuls/id/MAPG-86FPQL
- http://rockwellautomation.custhelp.com/cgi-bin/rockwellautomation.cfg/php/enduser/std_adp.php?p_faqid=69735
- http://www.kb.cert.org/vuls/id/362332
- https://support.windriver.com/olsPortal/faces/maintenance/downloadDetails.jspx?contentId=033708
- http://www.kb.cert.org/vuls/id/MAPG-86EPFA
- http://blog.metasploit.com/2010/08/vxworks-vulnerabilities.html
More from rockwellautomation
View All →Affected Vendor
rockwellautomation
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.