Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown
CVE-2024-12399
Disclosure Date: January 17, 2025 (last updated January 17, 2025)
CWE-924: Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability
exists that could cause partial loss of confidentiality, loss of integrity and availability of the HMI when attacker performs
man in the middle attack by intercepting the communication.
0
Attacker Value
Unknown
CVE-2023-3953
Disclosure Date: August 09, 2023 (last updated October 08, 2023)
A CWE-119: Improper Restriction of Operations within the Bounds of a Memory
Buffer vulnerability exists that could cause memory corruption when an authenticated user
opens a tampered log file from GP-Pro EX.
0
Attacker Value
Unknown
CVE-2018-7832
Disclosure Date: December 24, 2018 (last updated November 27, 2024)
An Improper Input Validation vulnerability exists in Pro-Face GP-Pro EX v4.08 and previous versions which could cause the execution arbitrary executable when GP-Pro EX is launched.
0
Attacker Value
Unknown
CVE-2017-9961
Disclosure Date: September 26, 2017 (last updated November 26, 2024)
A vulnerability exists in Schneider Electric's Pro-Face GP Pro EX version 4.07.000 that allows an attacker to execute arbitrary code. Malicious code installation requires an access to the computer. By placing a specific DLL/OCX file, an attacker is able to force the process to load arbitrary DLL and execute arbitrary code in the context of the process.
0