Show filters
151 Total Results
Displaying 101-110 of 151
Sort by:
Attacker Value
Unknown
CVE-2022-33884
Disclosure Date: October 03, 2022 (last updated February 24, 2025)
Parsing a maliciously crafted X_B file can force Autodesk AutoCAD 2023 and 2022 to read beyond allocated boundaries. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.
0
Attacker Value
Unknown
CVE-2022-2793
Disclosure Date: August 19, 2022 (last updated February 24, 2025)
Emerson Electric's Proficy Machine Edition Version 9.00 and prior is vulenrable to CWE-353 Missing Support for Integrity Check, and has no authentication or authorization of data packets after establishing a connection for the SRTP protocol.
0
Attacker Value
Unknown
CVE-2022-2792
Disclosure Date: August 19, 2022 (last updated February 24, 2025)
Emerson Electric's Proficy Machine Edition Version 9.00 and prior is vulenrable to CWE-284 Improper Access Control, and stores project data in a directory with improper access control lists.
0
Attacker Value
Unknown
CVE-2022-2790
Disclosure Date: August 19, 2022 (last updated February 24, 2025)
Emerson Electric's Proficy Machine Edition Version 9.00 and prior is vulenrable to CWE-347 Improper Verification of Cryptographic Signature, and does not properly verify compiled logic (PDT files) and data blocks data (BLD/BLK files).
0
Attacker Value
Unknown
CVE-2022-2789
Disclosure Date: August 19, 2022 (last updated February 24, 2025)
Emerson Electric's Proficy Machine Edition Version 9.00 and prior is vulnerable to CWE-345 Insufficient Verification of Data Authenticity, and can display logic that is different than the compiled logic.
0
Attacker Value
Unknown
CVE-2022-2788
Disclosure Date: August 19, 2022 (last updated February 24, 2025)
Emerson Electric's Proficy Machine Edition Version 9.80 and prior is vulnerable to CWE-29 Path Traversal: '\..\Filename', also known as a ZipSlip attack, through an upload procedure which enables attackers to implant a malicious .BLZ file on the PLC. The file can transfer through the engineering station onto Windows in a way that executes the malicious code.
0
Attacker Value
Unknown
CVE-2022-35161
Disclosure Date: August 03, 2022 (last updated February 24, 2025)
GVRET Stable Release as of Aug 15, 2015 was discovered to contain a buffer overflow via the handleConfigCmd function at SerialConsole.cpp.
0
Attacker Value
Unknown
CVE-2022-33881
Disclosure Date: July 29, 2022 (last updated February 24, 2025)
Parsing a maliciously crafted PRT file can force Autodesk AutoCAD 2023 to read beyond allocated boundaries. This vulnerability in conjunction with other vulnerabilities could lead to code execution in the context of the current process.
0
Attacker Value
Unknown
CVE-2022-27871
Disclosure Date: June 21, 2022 (last updated February 23, 2025)
Autodesk AutoCAD product suite, Revit, Design Review and Navisworks releases using PDFTron prior to 9.1.17 version may be used to write beyond the allocated buffer while parsing PDF files. This vulnerability may be exploited to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2022-25788
Disclosure Date: April 19, 2022 (last updated February 23, 2025)
A maliciously crafted JT file in Autodesk AutoCAD 2022 may be used to write beyond the allocated buffer while parsing JT files. This vulnerability can be exploited to execute arbitrary code.
0