Show filters
401 Total Results
Displaying 291-300 of 401
Sort by:
Attacker Value
Unknown

CVE-2021-22784

Disclosure Date: July 21, 2021 (last updated February 23, 2025)
A CWE-306: Missing Authentication for Critical Function vulnerability exists in C-Bus Toolkit v1.15.8 and prior that could allow an attacker to use a crafted webpage to obtain remote access to the system.
Attacker Value
Unknown

CVE-2021-30186

Disclosure Date: May 25, 2021 (last updated February 22, 2025)
CODESYS V2 runtime system SP before 2.4.7.55 has a Heap-based Buffer Overflow.
Attacker Value
Unknown

CVE-2021-30195

Disclosure Date: May 25, 2021 (last updated February 22, 2025)
CODESYS V2 runtime system before 2.4.7.55 has Improper Input Validation.
Attacker Value
Unknown

CVE-2021-30187

Disclosure Date: May 25, 2021 (last updated February 22, 2025)
CODESYS V2 runtime system SP before 2.4.7.55 has Improper Neutralization of Special Elements used in an OS Command.
Attacker Value
Unknown

CVE-2021-29242

Disclosure Date: May 03, 2021 (last updated February 22, 2025)
CODESYS Control Runtime system before 3.5.17.0 has improper input validation. Attackers can send crafted communication packets to change the router's addressing scheme and may re-route, add, remove or change low level communication packages.
Attacker Value
Unknown

CVE-2021-29241

Disclosure Date: May 03, 2021 (last updated February 22, 2025)
CODESYS Gateway 3 before 3.5.16.70 has a NULL pointer dereference that may result in a denial of service (DoS).
Attacker Value
Unknown

CVE-2021-22719

Disclosure Date: April 13, 2021 (last updated February 22, 2025)
A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in C-Bus Toolkit (V1.15.7 and prior) that could allow a remote code execution when a file is uploaded.
Attacker Value
Unknown

CVE-2021-22718

Disclosure Date: April 13, 2021 (last updated February 22, 2025)
A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in C-Bus Toolkit (V1.15.7 and prior) that could allow a remote code execution when restoring project files.
Attacker Value
Unknown

CVE-2021-22716

Disclosure Date: April 13, 2021 (last updated February 22, 2025)
A CWE-732: Incorrect Permission Assignment for Critical Resource vulnerability exists that could allow remote code execution when an unprivileged user modifies a file. Affected Product: C-Bus Toolkit (V1.15.9 and prior)
Attacker Value
Unknown

CVE-2021-22720

Disclosure Date: April 13, 2021 (last updated February 22, 2025)
A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in C-Bus Toolkit (V1.15.7 and prior) that could allow a remote code execution when restoring a project.