Show filters
38 Total Results
Displaying 1-10 of 38
Sort by:
Attacker Value
Unknown
CVE-2024-8232
Disclosure Date: September 10, 2024 (last updated September 11, 2024)
SpiderControl SCADA Web Server has a vulnerability that could allow an
attacker to upload specially crafted malicious files without
authentication.
0
Attacker Value
Unknown
CVE-2023-34982
Disclosure Date: November 15, 2023 (last updated December 09, 2023)
This external control vulnerability, if exploited, could allow a local OS-authenticated user with standard privileges to delete files with System privilege on the machine where these products are installed, resulting in denial of service.
0
Attacker Value
Unknown
CVE-2023-33873
Disclosure Date: November 15, 2023 (last updated December 09, 2023)
This privilege escalation vulnerability, if exploited, cloud allow a local OS-authenticated user with standard privileges to escalate to System privilege on the machine where these products are installed, resulting in complete compromise of the target machine.
0
Attacker Value
Unknown
CVE-2023-1256
Disclosure Date: March 16, 2023 (last updated October 08, 2023)
The listed versions of AVEVA Plant SCADA and AVEVA Telemetry Server are vulnerable to an improper authorization exploit which could allow an unauthenticated user to remotely read data, cause denial of service, and tamper with alarm states.
0
Attacker Value
Unknown
CVE-2020-16235
Disclosure Date: May 19, 2022 (last updated February 23, 2025)
Inadequate encryption may allow the credentials used by Emerson OpenEnterprise, up through version 3.3.5, to access field devices and external systems to be obtained.
0
Attacker Value
Unknown
CVE-2021-43938
Disclosure Date: April 29, 2022 (last updated February 23, 2025)
Elcomplus SmartPTT SCADA Server is vulnerable to an unauthenticated user can request various files from the server without any authentication or authorization.
0
Attacker Value
Unknown
CVE-2021-43937
Disclosure Date: April 29, 2022 (last updated February 23, 2025)
Elcomplus SmartPTT SCADA Server web application does not, or cannot, sufficiently verify whether a well-formed, valid, consistent request was intentionally provided by the user who submitted the request.
0
Attacker Value
Unknown
CVE-2022-21155
Disclosure Date: April 12, 2022 (last updated February 23, 2025)
A specially crafted packet sent to the Fernhill SCADA Server Version 3.77 and earlier may cause an exception, causing the server process (FHSvrService.exe) to exit.
0
Attacker Value
Unknown
CVE-2020-10640
Disclosure Date: February 24, 2022 (last updated February 23, 2025)
Emerson OpenEnterprise versions through 3.3.4 may allow an attacker to run an arbitrary commands with system privileges or perform remote code execution via a specific communication service.
0
Attacker Value
Unknown
CVE-2020-10636
Disclosure Date: February 24, 2022 (last updated February 23, 2025)
Inadequate encryption may allow the passwords for Emerson OpenEnterprise versions through 3.3.4 user accounts to be obtained.
0