Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown
CVE-2020-16235
Disclosure Date: May 19, 2022 (last updated February 23, 2025)
Inadequate encryption may allow the credentials used by Emerson OpenEnterprise, up through version 3.3.5, to access field devices and external systems to be obtained.
0
Attacker Value
Unknown
CVE-2020-10640
Disclosure Date: February 24, 2022 (last updated February 23, 2025)
Emerson OpenEnterprise versions through 3.3.4 may allow an attacker to run an arbitrary commands with system privileges or perform remote code execution via a specific communication service.
0
Attacker Value
Unknown
CVE-2020-10636
Disclosure Date: February 24, 2022 (last updated February 23, 2025)
Inadequate encryption may allow the passwords for Emerson OpenEnterprise versions through 3.3.4 user accounts to be obtained.
0
Attacker Value
Unknown
CVE-2020-10632
Disclosure Date: February 24, 2022 (last updated February 23, 2025)
Inadequate folder security permissions in Emerson OpenEnterprise versions through 3.3.4 may allow modification of important configuration files, which could cause the system to fail or behave in an unpredictable manner.
0
Attacker Value
Unknown
CVE-2020-6970
Disclosure Date: February 19, 2020 (last updated February 21, 2025)
A Heap-based Buffer Overflow was found in Emerson OpenEnterprise SCADA Server 2.83 (if Modbus or ROC Interfaces have been installed and are in use) and all versions of OpenEnterprise 3.1 through 3.3.3, where a specially crafted script could execute code on the OpenEnterprise Server.
0