Show filters
27 Total Results
Displaying 1-10 of 27
Sort by:
Attacker Value
Unknown
CVE-2017-5753
Disclosure Date: January 04, 2018 (last updated January 15, 2025)
Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.
1
Attacker Value
Unknown
CVE-2024-5849
Disclosure Date: August 13, 2024 (last updated August 23, 2024)
An unauthenticated remote attacker may use a reflected XSS vulnerability to obtain information from a user or reboot the affected device once.
0
Attacker Value
Unknown
CVE-2024-38502
Disclosure Date: August 13, 2024 (last updated August 23, 2024)
An unauthenticated remote attacker may use stored XSS vulnerability to obtain information from a user or reboot the affected device once.
0
Attacker Value
Unknown
CVE-2024-38501
Disclosure Date: August 13, 2024 (last updated August 23, 2024)
An unauthenticated remote attacker may use a HTML injection vulnerability with limited length to inject malicious HTML code and gain low-privileged access on the affected device.
0
Attacker Value
Unknown
CVE-2024-6422
Disclosure Date: July 10, 2024 (last updated September 06, 2024)
An unauthenticated remote attacker can manipulate the device via Telnet, stop processes, read, delete and change data.
0
Attacker Value
Unknown
CVE-2024-6421
Disclosure Date: July 10, 2024 (last updated September 06, 2024)
An unauthenticated remote attacker can read out sensitive device information through a incorrectly configured FTP service.
0
Attacker Value
Unknown
CVE-2021-34559
Disclosure Date: August 16, 2021 (last updated November 28, 2024)
In PEPPERL+FUCHS WirelessHART-Gateway <= 3.0.8 a vulnerability may allow remote attackers to rewrite links and URLs in cached pages to arbitrary strings.
0
Attacker Value
Unknown
CVE-2021-34564
Disclosure Date: August 16, 2021 (last updated November 28, 2024)
Any cookie-stealing vulnerabilities within the application or browser would enable an attacker to steal the user's credentials to the PEPPERL+FUCHS WirelessHART-Gateway 3.0.9.
0
Attacker Value
Unknown
CVE-2021-34562
Disclosure Date: August 16, 2021 (last updated November 28, 2024)
In PEPPERL+FUCHS WirelessHART-Gateway 3.0.8 it is possible to inject arbitrary JavaScript into the application's response.
0
Attacker Value
Unknown
CVE-2021-34560
Disclosure Date: August 16, 2021 (last updated November 28, 2024)
In PEPPERL+FUCHS WirelessHART-Gateway <= 3.0.9 a form contains a password field with autocomplete enabled. The stored credentials can be captured by an attacker who gains control over the user's computer. Therefore the user must have logged in at least once.
0