Show filters
27 Total Results
Displaying 11-20 of 27
Sort by:
Attacker Value
Unknown

CVE-2018-18986

Disclosure Date: February 05, 2019 (last updated November 27, 2024)
LCDS Laquis SCADA prior to version 4.1.0.4150 allows the opening of a specially crafted report format file that may cause an out of bounds read, which may cause a system crash, allow data exfiltration, or remote code execution.
0
Attacker Value
Unknown

CVE-2018-18998

Disclosure Date: February 05, 2019 (last updated November 27, 2024)
LCDS Laquis SCADA prior to version 4.1.0.4150 uses hard coded credentials, which may allow an attacker unauthorized access to the system with high privileges.
0
Attacker Value
Unknown

CVE-2018-19002

Disclosure Date: February 05, 2019 (last updated November 27, 2024)
LCDS Laquis SCADA prior to version 4.1.0.4150 allows improper control of generation of code when opening a specially crafted project file, which may allow remote code execution, data exfiltration, or cause a system crash.
0
Attacker Value
Unknown

CVE-2018-18992

Disclosure Date: February 05, 2019 (last updated November 27, 2024)
LCDS Laquis SCADA prior to version 4.1.0.4150 allows taking in user input without proper sanitation, which may allow an attacker to execute remote code on the server.
0
Attacker Value
Unknown

CVE-2018-18996

Disclosure Date: February 05, 2019 (last updated November 27, 2024)
LCDS Laquis SCADA prior to version 4.1.0.4150 allows taking in user input without proper authorization or sanitation, which may allow an attacker to execute remote code on the server.
0
Attacker Value
Unknown

CVE-2018-19004

Disclosure Date: February 01, 2019 (last updated November 27, 2024)
LCDS Laquis SCADA prior to version 4.1.0.4150 allows out of bounds read when opening a specially crafted project file, which may allow data exfiltration.
0
Attacker Value
Unknown

CVE-2018-18988

Disclosure Date: February 01, 2019 (last updated November 27, 2024)
LCDS Laquis SCADA prior to version 4.1.0.4150 allows execution of script code by opening a specially crafted report format file. This may allow remote code execution, data exfiltration, or cause a system crash.
0
Attacker Value
Unknown

CVE-2018-17897

Disclosure Date: October 17, 2018 (last updated November 27, 2024)
LAquis SCADA Versions 4.1.0.3870 and prior has several integer overflow to buffer overflow vulnerabilities, which may allow remote code execution.
0
Attacker Value
Unknown

CVE-2018-17895

Disclosure Date: October 17, 2018 (last updated November 27, 2024)
LAquis SCADA Versions 4.1.0.3870 and prior has several out-of-bounds read vulnerabilities, which may allow remote code execution.
0
Attacker Value
Unknown

CVE-2018-17901

Disclosure Date: October 17, 2018 (last updated November 27, 2024)
LAquis SCADA Versions 4.1.0.3870 and prior, when processing project files the application fails to sanitize user input prior to performing write operations on a stack object, which may allow an attacker to execute code under the current process.
0