Show filters
85 Total Results
Displaying 11-20 of 85
Sort by:
Attacker Value
Unknown

CVE-2023-32787

Disclosure Date: May 15, 2023 (last updated April 03, 2024)
The OPC UA Legacy Java Stack before 6f176f2 enables an attacker to block OPC UA server applications via uncontrolled resource consumption so that they can no longer serve client applications.
Attacker Value
Unknown

CVE-2023-0027

Disclosure Date: March 17, 2023 (last updated November 08, 2023)
Rockwell Automation Modbus TCP Server AOI prior to 2.04.00 is vulnerable to an unauthorized user sending a malformed message that could cause the controller to respond with a copy of the most recent response to the last valid request. If exploited, an unauthorized user could read the connected device’s Modbus TCP Server AOI information.
Attacker Value
Unknown

CVE-2022-2967

Disclosure Date: January 03, 2023 (last updated October 08, 2023)
Prosys OPC UA Simulation Server version prior to v5.3.0-64 and UA Modbus Server versions 1.4.18-5 and prior do not sufficiently protect credentials, which could allow an attacker to obtain user credentials and gain access to system data.
Attacker Value
Unknown

CVE-2022-4857

Disclosure Date: December 30, 2022 (last updated October 08, 2023)
A vulnerability was found in Modbus Tools Modbus Poll up to 9.10.0 and classified as critical. Affected by this issue is some unknown functionality of the file mbpoll.exe of the component mbp File Handler. The manipulation leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-217022 is the identifier assigned to this vulnerability.
Attacker Value
Unknown

CVE-2022-4856

Disclosure Date: December 30, 2022 (last updated October 08, 2023)
A vulnerability has been found in Modbus Tools Modbus Slave up to 7.5.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file mbslave.exe of the component mbs File Handler. The manipulation leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-217021 was assigned to this vulnerability.
Attacker Value
Unknown

CVE-2022-30260

Disclosure Date: December 26, 2022 (last updated October 08, 2023)
Emerson DeltaV Distributed Control System (DCS) has insufficient verification of firmware integrity (an inadequate checksum approach, and no signature). This affects versions before 14.3 of DeltaV M-series, DeltaV S-series, DeltaV P-series, DeltaV SIS, and DeltaV CIOC/EIOC/WIOC IO cards.
Attacker Value
Unknown

CVE-2022-42012

Disclosure Date: October 10, 2022 (last updated December 28, 2023)
An issue was discovered in D-Bus before 1.12.24, 1.13.x and 1.14.x before 1.14.4, and 1.15.x before 1.15.2. An authenticated attacker can cause dbus-daemon and other programs that use libdbus to crash by sending a message with attached file descriptors in an unexpected format.
Attacker Value
Unknown

CVE-2022-42011

Disclosure Date: October 10, 2022 (last updated December 28, 2023)
An issue was discovered in D-Bus before 1.12.24, 1.13.x and 1.14.x before 1.14.4, and 1.15.x before 1.15.2. An authenticated attacker can cause dbus-daemon and other programs that use libdbus to crash when receiving a message where an array length is inconsistent with the size of the element type.
Attacker Value
Unknown

CVE-2022-42010

Disclosure Date: October 10, 2022 (last updated December 28, 2023)
An issue was discovered in D-Bus before 1.12.24, 1.13.x and 1.14.x before 1.14.4, and 1.15.x before 1.15.2. An authenticated attacker can cause dbus-daemon and other programs that use libdbus to crash when receiving a message with certain invalid type signatures.
Attacker Value
Unknown

CVE-2022-0367

Disclosure Date: August 29, 2022 (last updated October 08, 2023)
A heap-based buffer overflow flaw was found in libmodbus in function modbus_reply() in src/modbus.c.