Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 8.8
CVE-2022-1607
Cross-Site Request Forgery (CSRF) vulnerability in ABB Pulsar Plus System Controller NE843_S, ABB Infinity DC Power Plant allows Cross Site Request F…
Infinity Dc Power Plant
5.0.0+
HIGH 8.4
CVE-2022-34838
Storing Passwords in a Recoverable Format vulnerability in ABB Zenon 8.20 allows an attacker who successfully exploit the vulnerability may add or al…
Zenon
after 8.20
HIGH 8.2
CVE-2022-34836
Relative Path Traversal vulnerability in ABB Zenon 8.20 allows the user to access files on the Zenon system and user also can add own log messages an…
Zenon
after 8.20
MEDIUM 6.1
CVE-2022-34837
Storing Passwords in a Recoverable Format vulnerability in ABB Zenon 8.20 allows an attacker who successfully exploit the vulnerability may add more …
Zenon
after 8.20
CRITICAL 9.8
CVE-2022-0902EPSS 17%
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), Improper Neutralization of Special Elements used in a Command ('Comma…
Rmc 100 Firmware
2105298-024 / 2105457-037+
MEDIUM 6.5
CVE-2022-1596
Incorrect Permission Assignment for Critical Resource vulnerability in ABB REX640 PCL1, REX640 PCL2, REX640 PCL3 allows an authenticated attacker to …
Rex640 Pcl1 Firmware
1.1.4 / 1.2.1+
HIGH 7.8
CVE-2022-31216
Vulnerabilities in the Drive Composer allow a low privileged attacker to create and write to a file anywhere on the file system as SYSTEM with arbitr…
Automation Builder
2.7.1+
HIGH 7.8
CVE-2022-31217
Vulnerabilities in the Drive Composer allow a low privileged attacker to create and write to a file anywhere on the file system as SYSTEM with arbitr…
Automation Builder
2.7.1+
HIGH 7.8
CVE-2022-31218
Vulnerabilities in the Drive Composer allow a low privileged attacker to create and write to a file anywhere on the file system as SYSTEM with arbitr…
Automation Builder
2.7.1+
HIGH 7.8
CVE-2022-31219
Vulnerabilities in the Drive Composer allow a low privileged attacker to create and write to a file anywhere on the file system as SYSTEM with arbitr…
Automation Builder
2.7.1+
HIGH 7.8
CVE-2022-26057
Vulnerabilities in the Mint WorkBench allow a low privileged attacker to create and write to a file anywhere on the file system as SYSTEM with arbitr…
Mint Workbench
after 5866
HIGH 7.8
CVE-2022-29483
Incorrect Default Permissions vulnerability in ABB e-Design allows attacker to install malicious software executing with SYSTEM permissions violating…
E Design
after 1.12.2.0004
MEDIUM 5.5
CVE-2022-28702
Incorrect Default Permissions vulnerability in ABB e-Design allows attacker to install malicious software executing with SYSTEM permissions violating…
E Design
after 1.12.2.0004
CRITICAL 9.8
CVE-2022-0947
A vulnerability in ABB ARG600 Wireless Gateway series that could allow an attacker to exploit the vulnerability by remotely connecting to the serial …
Arg600a1220na Firmware
after 3.4.10
HIGH 7.5
CVE-2022-28613
A vulnerability exists in the HCI Modbus TCP function included in the product versions listed above. If the HCI Modbus TCP is en-abled and configured…
Rtu500 Firmware
12.0.14.0 / 12.2.12.0+
HIGH 7.5
CVE-2021-22277
Improper Input Validation vulnerability in ABB 800xA, Control Software for AC 800M, Control Builder Safe, Compact Product Suite - Control and I/O, AB…
800xa
3.0 / 6.0.0-4+
HIGH 7.5
CVE-2021-22288
Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of service or make the module un…
Pni800 Firmware
Mitigation only
HIGH 8.8
CVE-2021-22284
Incorrect Permission Assignment for Critical Resource vulnerability in OPC Server for AC 800M allows an attacker to execute arbitrary code in the nod…
Opc Server For Ac 800m
6.0.0-4+
HIGH 7.5
CVE-2021-22285
Improper Handling of Exceptional Conditions, Improper Check for Unusual or Exceptional Conditions vulnerability in the ABB SPIET800 and PNI800 module…
Pni800 Firmware
Mitigation only
HIGH 7.5
CVE-2021-22286
Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of service or make the module un…
Pni800 Firmware
Mitigation only
CRITICAL 9.8
CVE-2021-22279
A Missing Authentication vulnerability in RobotWare for the OmniCore robot controller allows an attacker to read and modify files on the robot contro…
Omnicore C30 Firmware
7.3.2+
MEDIUM 6.7
CVE-2021-22278
A certificate validation vulnerability in PCM600 Update Manager allows attacker to get unwanted software packages to be installed on computer which h…
Update Manager
after 2.10
CRITICAL 9.4
CVE-2021-22272
The vulnerability origins in the commissioning process where an attacker of the ControlTouch can enter a serial number in a specific way to transfer …
Mybuildings
2021-05-03+
MEDIUM 5.5
CVE-2021-22276
The vulnerability allows a successful attacker to bypass the integrity check of FW uploaded to the free@home System Access Point.
System Access Point 2.0 Firmware
2.6.4+
CRITICAL 9.8
CVE-2020-24672
A vulnerability in Base Software for SoftControl allows an attacker to insert and run arbitrary code in a computer running the affected product. This…
Base Software
after 6.1
HIGH 7.5
CVE-2020-24686
The vulnerabilities can be exploited to cause the web visualization component of the PLC to stop and not respond, leading to genuine users losing rem…
Pm554 Firmware
Mitigation only
HIGH 8.6
CVE-2020-24685
An unauthenticated specially crafted packet sent by an attacker over the network will cause a denial-of-service (DoS) vulnerability. Vulnerability al…
Ac500 Cpu Firmware
2.8.5+
CRITICAL 9.8
CVE-2020-24673
In S+ Operations and S+ Historian, a successful SQL injection exploit can read sensitive data from the database, modify database data (Insert/Update/…
Symphony \+ Historian
Mitigation only
CRITICAL 9.8
CVE-2020-24675
In S+ Operations and S+ History, it is possible that an unauthenticated user could inject values to the Operations History server (or standalone S+ H…
Symphony \+ Historian
Mitigation only
CRITICAL 9.8
CVE-2020-24679
A S+ Operations and S+ Historian service is subject to a DoS by special crafted messages. An attacker might use this flaw to make it crash or even ex…
Symphony \+ Historian
Mitigation only