Show filters
232 Total Results
Displaying 81-90 of 232
Sort by:
Attacker Value
Unknown
CVE-2022-34759
Disclosure Date: July 12, 2022 (last updated February 24, 2025)
A CWE-787: Out-of-bounds Write vulnerability exists that could cause a denial of service of the webserver due to improper parsing of the HTTP Headers. Affected Products: X80 advanced RTU Communication Module (BMENOR2200H) (V1.0), OPC UA Modicon Communication Module (BMENUA0100) (V1.10 and prior)
0
Attacker Value
Unknown
CVE-2022-33736
Disclosure Date: July 12, 2022 (last updated February 24, 2025)
A vulnerability has been identified in Opcenter Quality V13.1 (All versions < V13.1.20220624), Opcenter Quality V13.2 (All versions < V13.2.20220624). The affected applications do not properly validate login information during authentication. This could lead to denial of service condition for existing users or allow unauthenticated remote attackers to successfully login without credentials.
0
Attacker Value
Unknown
CVE-2022-1794
Disclosure Date: July 06, 2022 (last updated February 24, 2025)
The CODESYS OPC DA Server prior V3.5.18.20 stores PLC passwords as plain text in its configuration file so that it is visible to all authorized Microsoft Windows users of the system.
0
Attacker Value
Unknown
CVE-2022-30707
Disclosure Date: June 28, 2022 (last updated February 24, 2025)
Violation of secure design principles exists in the communication of CAMS for HIS. Affected products and versions are CENTUM series where LHS4800 is installed (CENTUM CS 3000 and CENTUM CS 3000 Small R3.08.10 to R3.09.00), CENTUM series where CAMS function is used (CENTUM VP, CENTUM VP Small, and CENTUM VP Basic R4.01.00 to R4.03.00), CENTUM series regardless of the use of CAMS function (CENTUM VP, CENTUM VP Small, and CENTUM VP Basic R5.01.00 to R5.04.20 and R6.01.00 to R6.09.00), Exaopc R3.72.00 to R3.80.00 (only if NTPF100-S6 'For CENTUM VP Support CAMS for HIS' is installed), B/M9000 CS R5.04.01 to R5.05.01, and B/M9000 VP R6.01.01 to R8.03.01). If an adjacent attacker successfully compromises a computer using CAMS for HIS software, they can use credentials from the compromised machine to access data from another machine using CAMS for HIS software. This can lead to a disabling of CAMS for HIS software functions on any affected machines, or information disclosure/alteration.
0
Attacker Value
Unknown
CVE-2022-31805
Disclosure Date: June 23, 2022 (last updated February 24, 2025)
In the CODESYS Development System multiple components in multiple versions transmit the passwords for the communication between clients and servers unprotected.
0
Attacker Value
Unknown
CVE-2022-1261
Disclosure Date: May 24, 2022 (last updated February 23, 2025)
Matrikon, a subsidary of Honeywell Matrikon OPC Server (all versions) is vulnerable to a condition where a low privileged user allowed to connect to the OPC server to use the functions of the IPersisFile to execute operating system processes with system-level privileges.
0
Attacker Value
Unknown
CVE-2021-32935
Disclosure Date: May 23, 2022 (last updated February 23, 2025)
The affected Cognex product, the In-Sight OPC Server versions v5.7.4 (96) and prior, deserializes untrusted data, which could allow a remote attacker access to system level permission commands and local privilege escalation.
0
Attacker Value
Unknown
CVE-2022-25229
Disclosure Date: May 20, 2022 (last updated February 23, 2025)
Popcorn Time 0.4.7 has a Stored XSS in the 'Movies API Server(s)' field via the 'settings' page. The 'nodeIntegration' configuration is set to on which allows the 'webpage' to use 'NodeJs' features, an attacker can leverage this to run OS commands.
0
Attacker Value
Unknown
CVE-2022-27461
Disclosure Date: May 04, 2022 (last updated February 23, 2025)
In nopCommerce 4.50.1, an open redirect vulnerability can be triggered by luring a user to authenticate to a nopCommerce page by clicking on a crafted link.
0
Attacker Value
Unknown
CVE-2022-28451
Disclosure Date: May 02, 2022 (last updated February 23, 2025)
nopCommerce 4.50.1 is vulnerable to Directory Traversal via the backup file in the Maintenance feature.
0