Unrated severityNVD Advisory· Published May 9, 2013· Updated Jun 16, 2026
CVE-2013-0684
CVE-2013-0684
Description
SQL injection vulnerability in Invensys Wonderware Information Server (WIS) 4.0 SP1SP1, 4.5- Portal, and 5.0- Portal allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:invensys:wonderware_information_server:4.0:sp1sp1:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:invensys:wonderware_information_server:4.0:sp1sp1:*:*:*:*:*:*
- cpe:2.3:a:invensys:wonderware_information_server:4.5:-:portal:*:*:*:*:*
- cpe:2.3:a:invensys:wonderware_information_server:5.0:-:portal:*:*:*:*:*
- (no CPE)range: 4.0 SP1SP1, 4.5- Portal, 5.0- Portal
Patches
Vulnerability mechanics
References
1- ics-cert.us-cert.gov/advisories/ICSA-13-113-01nvdUS Government Resource
News mentions
0No linked articles in our index yet.