Show filters
11 Total Results
Displaying 1-10 of 11
Sort by:
Attacker Value
Unknown
CVE-2022-46732
Disclosure Date: January 18, 2023 (last updated October 08, 2023)
Even if the authentication fails for local service authentication, the requested command could still execute regardless of authentication status.
0
Attacker Value
Unknown
CVE-2022-46660
Disclosure Date: January 18, 2023 (last updated November 08, 2023)
An unauthorized user could alter or write files with full control over the path and content of the file.
0
Attacker Value
Unknown
CVE-2022-46331
Disclosure Date: January 18, 2023 (last updated November 08, 2023)
An unauthorized user could possibly delete any file on the system.
0
Attacker Value
Unknown
CVE-2022-43494
Disclosure Date: January 18, 2023 (last updated November 08, 2023)
An unauthorized user could be able to read any file on the system, potentially exposing sensitive information.
0
Attacker Value
Unknown
CVE-2022-38469
Disclosure Date: January 18, 2023 (last updated November 08, 2023)
An unauthorized user with network access and the decryption key could decrypt sensitive data, such as usernames and passwords.
0
Attacker Value
Unknown
CVE-2012-2515
Disclosure Date: July 05, 2012 (last updated October 04, 2023)
Multiple stack-based buffer overflows in the KeyHelp.KeyCtrl.1 ActiveX control in KeyHelp.ocx 1.2.312 in KeyWorks KeyHelp Module (aka the HTML Help component), as used in EMC Documentum ApplicationXtender Desktop 5.4; EMC Captiva Quickscan Pro 4.6 SP1; GE Intelligent Platforms Proficy Historian 3.1, 3.5, 4.0, and 4.5; GE Intelligent Platforms Proficy HMI/SCADA iFIX 5.0 and 5.1; GE Intelligent Platforms Proficy Pulse 1.0; GE Intelligent Platforms Proficy Batch Execution 5.6; GE Intelligent Platforms SI7 I/O Driver 7.20 through 7.42; and other products, allow remote attackers to execute arbitrary code via a long string in the second argument to the (1) JumpMappedID or (2) JumpURL method.
0
Attacker Value
Unknown
CVE-2012-2516
Disclosure Date: July 05, 2012 (last updated October 04, 2023)
An ActiveX control in KeyHelp.ocx in KeyWorks KeyHelp Module (aka the HTML Help component), as used in GE Intelligent Platforms Proficy Historian 3.1, 3.5, 4.0, and 4.5; Proficy HMI/SCADA iFIX 5.0 and 5.1; Proficy Pulse 1.0; Proficy Batch Execution 5.6; SI7 I/O Driver 7.20 through 7.42; and other products, allows remote attackers to execute arbitrary commands via crafted input, related to a "command injection vulnerability."
0
Attacker Value
Unknown
CVE-2012-0229
Disclosure Date: March 15, 2012 (last updated October 04, 2023)
The Data Archiver service in GE Intelligent Platforms Proficy Historian 4.5 and earlier allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a crafted session on TCP port 14000 to (1) ihDataArchiver.exe or (2) ihDataArchiver_x64.exe.
0
Attacker Value
Unknown
CVE-2011-1919
Disclosure Date: November 02, 2011 (last updated October 04, 2023)
Multiple stack-based buffer overflows in GE Intelligent Platforms Proficy Applications before 4.4.1 SIM 101 and 5.x before 5.0 SIM 43 allow remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via crafted TCP message traffic to (1) PRProficyMgr.exe in Proficy Server Manager, (2) PRGateway.exe in Proficy Server Gateway, (3) PRRDS.exe in Proficy Remote Data Service, or (4) PRLicenseMgr.exe in Proficy Server License Manager.
0
Attacker Value
Unknown
CVE-2011-1918
Disclosure Date: November 02, 2011 (last updated October 04, 2023)
Stack-based buffer overflow in the Data Archiver service in GE Intelligent Platforms Proficy Historian before 3.5 SIM 17 and 4.x before 4.0 SIM 12 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via crafted TCP message traffic.
0