Show filters
455 Total Results
Displaying 71-80 of 455
Sort by:
Attacker Value
Unknown

CVE-2024-4009

Disclosure Date: June 05, 2024 (last updated June 19, 2024)
Replay Attack in ABB, Busch-Jaeger, FTS Display (version 1.00) and BCU (version 1.3.0.33) allows attacker to capture/replay KNX telegram to local KNX Bus-System
Attacker Value
Unknown

CVE-2024-4008

Disclosure Date: June 05, 2024 (last updated June 19, 2024)
FDSK Leak in ABB, Busch-Jaeger, FTS Display (version 1.00) and BCU (version 1.3.0.33) allows attacker to take control via access to local KNX Bus-System
Attacker Value
Unknown

CVE-2024-35670

Disclosure Date: June 04, 2024 (last updated June 12, 2024)
Broken Authentication vulnerability in SoftLab Integrate Google Drive.This issue affects Integrate Google Drive: from n/a through 1.3.93.
Attacker Value
Unknown

CVE-2024-22120

Disclosure Date: May 17, 2024 (last updated May 17, 2024)
Zabbix server can perform command execution for configured scripts. After command is executed, audit entry is added to "Audit Log". Due to "clientip" field is not sanitized, it is possible to injection SQL into "clientip" and exploit time based blind SQL injection.
0
Attacker Value
Unknown

CVE-2024-1914

Disclosure Date: May 14, 2024 (last updated May 15, 2024)
An attacker who successfully exploited these vulnerabilities could cause the robot to stop, make the robot controller inaccessible. The vulnerability could potentially be exploited to perform unauthorized actions by an attacker. This vulnerability arises under specific condition when specially crafted message is processed by the system. Below are reported vulnerabilities in the Robot Ware versions. * IRC5- RobotWare 6 < 6.15.06 except 6.10.10, and 6.13.07 * OmniCore- RobotWare 7 < 7.14
0
Attacker Value
Unknown

CVE-2024-1913

Disclosure Date: May 14, 2024 (last updated May 15, 2024)
An attacker who successfully exploited these vulnerabilities could cause the robot to stop, make the robot controller inaccessible, or execute arbitrary code.  The vulnerability could potentially be exploited to perform unauthorized actions by an attacker. This vulnerability arises under specific condition when specially crafted message is processed by the system. Below are reported vulnerabilities in the Robot Ware versions. * IRC5- RobotWare 6 < 6.15.06 except 6.10.10, and 6.13.07 * OmniCore- RobotWare 7 < 7.14
0
Attacker Value
Unknown

CVE-2024-0335

Disclosure Date: April 03, 2024 (last updated September 19, 2024)
ABB has internally identified a vulnerability in the ABB VPNI feature of the S+ Control API component which may be used by several Symphony Plus products (e.g., S+ Operations, S+ Engineering and S+ Analyst) This issue affects Symphony Plus S+ Operations: from 3..0;0 through 3.3 SP1 RU4, from 2.1;0 through 2.1 SP2 RU3, from 2.0;0 through 2.0 SP6 TC6; Symphony Plus S+ Engineering: from 2.1 through 2.3 RU3; Symphony Plus S+ Analyst: from 7.0.0.0 through 7.2.0.2.
0
Attacker Value
Unknown

CVE-2024-22119

Disclosure Date: February 09, 2024 (last updated February 16, 2024)
The cause of vulnerability is improper validation of form input field “Name” on Graph page in Items section.
Attacker Value
Unknown

CVE-2023-32728

Disclosure Date: December 18, 2023 (last updated December 23, 2023)
The Zabbix Agent 2 item key smart.disk.get does not sanitize its parameters before passing them to a shell command resulting possible vulnerability for remote code execution.
Attacker Value
Unknown

CVE-2023-32727

Disclosure Date: December 18, 2023 (last updated December 23, 2023)
An attacker who has the privilege to configure Zabbix items can use function icmpping() with additional malicious command inside it to execute arbitrary code on the current Zabbix server.