Show filters
129 Total Results
Displaying 61-70 of 129
Sort by:
Attacker Value
Unknown

CVE-2015-4059

Disclosure Date: May 29, 2015 (last updated October 05, 2023)
Heap-based buffer overflow in the License Server (LicenseServer.exe) in Wavelink Terminal Emulation (TE) allows remote attackers to execute arbitrary code via a large HTTP header.
0
Attacker Value
Unknown

CVE-2013-2810

Disclosure Date: December 08, 2014 (last updated October 05, 2023)
Emerson Process Management ROC800 RTU with software 3.50 and earlier, DL8000 RTU with software 2.30 and earlier, and ROC800L RTU with software 1.20 and earlier allows remote attackers to execute arbitrary commands via a TCP replay attack.
0
Attacker Value
Unknown

CVE-2014-2941

Disclosure Date: August 15, 2014 (last updated November 08, 2023)
Cobham Sailor 6000 satellite terminals have hardcoded Tbus 2 credentials, which allows remote attackers to obtain access via a TBUS2 command. NOTE: the vendor reportedly states "there is no possibility to exploit another user's credentials.
0
Attacker Value
Unknown

CVE-2014-0328

Disclosure Date: August 15, 2014 (last updated October 05, 2023)
The thraneLINK protocol implementation on Cobham devices does not verify firmware signatures, which allows attackers to execute arbitrary code by leveraging physical access or terminal access to send an SNMP request and a TFTP response.
0
Attacker Value
Unknown

CVE-2014-2370

Disclosure Date: July 24, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the web application on Omron NS5, NS8, NS10, NS12, and NS15 HMI terminals 8.1xx through 8.68x allows remote authenticated users to inject arbitrary web script or HTML via crafted data.
0
Attacker Value
Unknown

CVE-2014-2369

Disclosure Date: July 24, 2014 (last updated October 05, 2023)
Cross-site request forgery (CSRF) vulnerability in the web application on Omron NS5, NS8, NS10, NS12, and NS15 HMI terminals 8.1xx through 8.68x allows remote authenticated users to hijack the authentication of unspecified victims via unknown vectors.
0
Attacker Value
Unknown

CVE-2011-2198

Disclosure Date: May 21, 2014 (last updated October 05, 2023)
The "insert-blank-characters" capability in caps.c in gnome-terminal (vte) before 0.28.1 allows remote authenticated users to cause a denial of service (CPU and memory consumption and crash) via a crafted file, as demonstrated by a file containing the string "\033[100000000000000000@".
0
Attacker Value
Unknown

CVE-2013-0689

Disclosure Date: October 03, 2013 (last updated October 05, 2023)
The TFTP server on the Emerson Process Management ROC800 RTU with software 3.50 and earlier, DL8000 RTU with software 2.30 and earlier, and ROC800L RTU with software 1.20 and earlier allows remote attackers to upload files and consequently execute arbitrary code via unspecified vectors.
0
Attacker Value
Unknown

CVE-2013-0692

Disclosure Date: October 03, 2013 (last updated October 05, 2023)
The kernel in ENEA OSE on the Emerson Process Management ROC800 RTU with software 3.50 and earlier, DL8000 RTU with software 2.30 and earlier, and ROC800L RTU with software 1.20 and earlier allows remote attackers to execute arbitrary code by connecting to the debug service.
0
Attacker Value
Unknown

CVE-2013-0693

Disclosure Date: October 03, 2013 (last updated October 05, 2023)
The kernel in ENEA OSE on the Emerson Process Management ROC800 RTU with software 3.50 and earlier, DL8000 RTU with software 2.30 and earlier, and ROC800L RTU with software 1.20 and earlier performs network-beacon broadcasts, which allows remote attackers to obtain potentially sensitive information about device presence by listening for broadcast traffic.
0