CVE-2014-9196 - CVE House
Back to Database
Status published High CVE-2014-9196

Eaton’s Cooper Power Series Form 6 Control and Idea/IdeaPlus Relays with Ethernet

Vulnerability Description

Eaton Cooper Power Systems ProView 4.0 and 5.0 before 5.0 11 on Form 6 controls and Idea and IdeaPLUS relays generates TCP initial sequence number (ISN) values linearly, which makes it easier for remote attackers to spoof TCP sessions by predicting an ISN value.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2014-9196

Credits & Attribution

The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:

  • Dr. Raheem Beyah, David Formby, and San Shin Jung of Georgia Tech, via a research project partially sponsored by the Georgia Tech National Electric Energy Testing Research and Applications Center (NEETRAC)

Affected Vendor

Eaton’s Cooper Power Systems

View all reports →

Affected Software

Series Form 6, Idea/IdeaPLUS relays
Vulnerable Versions:
Pro View 4.0

Timeline

Official Publish: July 20th, 2015
Last Modified: September 5th, 2025
Added to House: July 19th, 2026

CVSS Vectors

Weaknesses (CWE)

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.