CVE-2013-2792 describes a denial-of-service vulnerability affecting Schweitzer Engineering Laboratories (SEL) SEL-2241, SEL-3505, and SEL-3530 RTAC master devices. A remote attacker can exploit this by sending a specially crafted DNP3 TCP packet, leading to an infinite loop and rendering the device unavailable. With a CVSS score of 7.1, this vulnerability is considered high severity, requiring medium attack complexity but no authentication, and resulting in a complete loss of availability. Its EPSS score is low, suggesting a minimal likelihood of exploitation. There is no evidence of active exploitation, nor is there publicly available exploit code in Metasploit, Nuclei, or ExploitDB. Community discussion and media coverage for this CVE are also absent, indicating a lack of widespread attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
r113-v0-z001001-d20110721CPE matchmatch criteria | cpe:2.3:h:selinc:sel-2241:r113-v0-z001001-d20110721:*:*:*:*:*:*:* | ||
r123-v0-z002001-d20130117CPE matchmatch criteria | cpe:2.3:h:selinc:sel-2241:r123-v0-z002001-d20130117:*:*:*:*:*:*:* | ||
r119-v0-z001001-d20120720CPE matchmatch criteria | cpe:2.3:h:selinc:sel-3505:r119-v0-z001001-d20120720:*:*:*:*:*:*:* | ||
r123-v0-z002001-d20130117CPE matchmatch criteria | cpe:2.3:h:selinc:sel-3505:r123-v0-z002001-d20130117:*:*:*:*:*:*:* | ||
r100_-v0-z001001-d20090915CPE matchmatch criteria | cpe:2.3:h:selinc:sel-3530:r100_-v0-z001001-d20090915:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:N/I:N/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.