CVE-2017-9962: Aveva Clearscada

High severity, CVSS 7.5. EPSS: 1% chance of exploitation in the next 30 days.

Schneider Electric's ClearSCADA versions released prior to August 2017 are susceptible to a memory allocation vulnerability, whereby malformed requests can be sent to ClearSCADA client applications to cause unexpected behavior. Client applications affected include ViewX and the Server Icon.

Affected products

  • Aveva Clearscada: up to and including 2010

Published 2017-09-26. Last modified 2026-06-17.