Show filters
85 Total Results
Displaying 11-20 of 85
Sort by:
Attacker Value
Unknown
CVE-2023-32787
Disclosure Date: May 15, 2023 (last updated April 03, 2024)
The OPC UA Legacy Java Stack before 6f176f2 enables an attacker to block OPC UA server applications via uncontrolled resource consumption so that they can no longer serve client applications.
0
Attacker Value
Unknown
CVE-2023-0027
Disclosure Date: March 17, 2023 (last updated November 08, 2023)
Rockwell Automation Modbus TCP Server AOI prior to 2.04.00 is vulnerable to an unauthorized user sending a malformed message that could cause the controller to respond with a copy of the most recent response to the last valid request. If exploited, an unauthorized user could read the connected device’s Modbus TCP Server AOI information.
0
Attacker Value
Unknown
CVE-2022-2967
Disclosure Date: January 03, 2023 (last updated October 08, 2023)
Prosys OPC UA Simulation Server version prior to v5.3.0-64 and UA Modbus Server versions 1.4.18-5 and prior do not sufficiently protect credentials, which could allow an attacker to obtain user credentials and gain access to system data.
0
Attacker Value
Unknown
CVE-2022-4857
Disclosure Date: December 30, 2022 (last updated October 08, 2023)
A vulnerability was found in Modbus Tools Modbus Poll up to 9.10.0 and classified as critical. Affected by this issue is some unknown functionality of the file mbpoll.exe of the component mbp File Handler. The manipulation leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-217022 is the identifier assigned to this vulnerability.
0
Attacker Value
Unknown
CVE-2022-4856
Disclosure Date: December 30, 2022 (last updated October 08, 2023)
A vulnerability has been found in Modbus Tools Modbus Slave up to 7.5.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file mbslave.exe of the component mbs File Handler. The manipulation leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-217021 was assigned to this vulnerability.
0
Attacker Value
Unknown
CVE-2022-30260
Disclosure Date: December 26, 2022 (last updated October 08, 2023)
Emerson DeltaV Distributed Control System (DCS) has insufficient verification of firmware integrity (an inadequate checksum approach, and no signature). This affects versions before 14.3 of DeltaV M-series, DeltaV S-series, DeltaV P-series, DeltaV SIS, and DeltaV CIOC/EIOC/WIOC IO cards.
0
Attacker Value
Unknown
CVE-2022-42012
Disclosure Date: October 10, 2022 (last updated December 28, 2023)
An issue was discovered in D-Bus before 1.12.24, 1.13.x and 1.14.x before 1.14.4, and 1.15.x before 1.15.2. An authenticated attacker can cause dbus-daemon and other programs that use libdbus to crash by sending a message with attached file descriptors in an unexpected format.
0
Attacker Value
Unknown
CVE-2022-42011
Disclosure Date: October 10, 2022 (last updated December 28, 2023)
An issue was discovered in D-Bus before 1.12.24, 1.13.x and 1.14.x before 1.14.4, and 1.15.x before 1.15.2. An authenticated attacker can cause dbus-daemon and other programs that use libdbus to crash when receiving a message where an array length is inconsistent with the size of the element type.
0
Attacker Value
Unknown
CVE-2022-42010
Disclosure Date: October 10, 2022 (last updated December 28, 2023)
An issue was discovered in D-Bus before 1.12.24, 1.13.x and 1.14.x before 1.14.4, and 1.15.x before 1.15.2. An authenticated attacker can cause dbus-daemon and other programs that use libdbus to crash when receiving a message with certain invalid type signatures.
0
Attacker Value
Unknown
CVE-2022-0367
Disclosure Date: August 29, 2022 (last updated October 08, 2023)
A heap-based buffer overflow flaw was found in libmodbus in function modbus_reply() in src/modbus.c.
0