Show filters
129 Total Results
Displaying 61-70 of 129
Sort by:
Attacker Value
Unknown
CVE-2015-4059
Disclosure Date: May 29, 2015 (last updated October 05, 2023)
Heap-based buffer overflow in the License Server (LicenseServer.exe) in Wavelink Terminal Emulation (TE) allows remote attackers to execute arbitrary code via a large HTTP header.
0
Attacker Value
Unknown
CVE-2013-2810
Disclosure Date: December 08, 2014 (last updated October 05, 2023)
Emerson Process Management ROC800 RTU with software 3.50 and earlier, DL8000 RTU with software 2.30 and earlier, and ROC800L RTU with software 1.20 and earlier allows remote attackers to execute arbitrary commands via a TCP replay attack.
0
Attacker Value
Unknown
CVE-2014-2941
Disclosure Date: August 15, 2014 (last updated November 08, 2023)
Cobham Sailor 6000 satellite terminals have hardcoded Tbus 2 credentials, which allows remote attackers to obtain access via a TBUS2 command. NOTE: the vendor reportedly states "there is no possibility to exploit another user's credentials.
0
Attacker Value
Unknown
CVE-2014-0328
Disclosure Date: August 15, 2014 (last updated October 05, 2023)
The thraneLINK protocol implementation on Cobham devices does not verify firmware signatures, which allows attackers to execute arbitrary code by leveraging physical access or terminal access to send an SNMP request and a TFTP response.
0
Attacker Value
Unknown
CVE-2014-2370
Disclosure Date: July 24, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the web application on Omron NS5, NS8, NS10, NS12, and NS15 HMI terminals 8.1xx through 8.68x allows remote authenticated users to inject arbitrary web script or HTML via crafted data.
0
Attacker Value
Unknown
CVE-2014-2369
Disclosure Date: July 24, 2014 (last updated October 05, 2023)
Cross-site request forgery (CSRF) vulnerability in the web application on Omron NS5, NS8, NS10, NS12, and NS15 HMI terminals 8.1xx through 8.68x allows remote authenticated users to hijack the authentication of unspecified victims via unknown vectors.
0
Attacker Value
Unknown
CVE-2011-2198
Disclosure Date: May 21, 2014 (last updated October 05, 2023)
The "insert-blank-characters" capability in caps.c in gnome-terminal (vte) before 0.28.1 allows remote authenticated users to cause a denial of service (CPU and memory consumption and crash) via a crafted file, as demonstrated by a file containing the string "\033[100000000000000000@".
0
Attacker Value
Unknown
CVE-2013-0689
Disclosure Date: October 03, 2013 (last updated October 05, 2023)
The TFTP server on the Emerson Process Management ROC800 RTU with software 3.50 and earlier, DL8000 RTU with software 2.30 and earlier, and ROC800L RTU with software 1.20 and earlier allows remote attackers to upload files and consequently execute arbitrary code via unspecified vectors.
0
Attacker Value
Unknown
CVE-2013-0692
Disclosure Date: October 03, 2013 (last updated October 05, 2023)
The kernel in ENEA OSE on the Emerson Process Management ROC800 RTU with software 3.50 and earlier, DL8000 RTU with software 2.30 and earlier, and ROC800L RTU with software 1.20 and earlier allows remote attackers to execute arbitrary code by connecting to the debug service.
0
Attacker Value
Unknown
CVE-2013-0693
Disclosure Date: October 03, 2013 (last updated October 05, 2023)
The kernel in ENEA OSE on the Emerson Process Management ROC800 RTU with software 3.50 and earlier, DL8000 RTU with software 2.30 and earlier, and ROC800L RTU with software 1.20 and earlier performs network-beacon broadcasts, which allows remote attackers to obtain potentially sensitive information about device presence by listening for broadcast traffic.
0