Vulnerability index

Browse CVEs

17 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Pcvue MEDIUM 5.5
CVE-2026-14868

The encryption algorithm used to protect the configuration of user accounts, stored in the built-in user directory of PcVue projects, all versions pr…

Fix: 17.0.0+
Fix from $1,600 2026-07-07
Pcvue MEDIUM 5.5
CVE-2026-14867

Credentials of built-in users are insecurely stored in the User directory of PcVue projects, all versions prior to 17.0.0. A local attacker could ret…

Fix: 17.0.0+
Fix from $1,600 2026-07-07
Pcvue MEDIUM 6.5
CVE-2026-1697

The Secure and SameSite attribute are missing in the GraphicalData web services and WebClient web app of PcVue in version 12.0.0 through 16.3.3 inclu…

Fix: 16.3.4+
Fix from $1,600 2026-02-26
Pcvue MEDIUM 6.1
CVE-2026-1695

An XSS vulnerability affects the OAuth web services used by the WebVue, WebScheduler, TouchVue and SnapVue features of PcVue in version 12.0.0 throug…

Fix: 16.3.4+
Fix from $1,600 2026-02-26
Pcvue MEDIUM 6.1
CVE-2026-1696

Some HTTP security headers are not properly set by the web server when sending responses to the client application.

Fix: 16.3.4+
Fix from $1,600 2026-02-26
Pcvue MEDIUM 6.1
CVE-2026-1698

A HTTP Host header attack vulnerability affects WebClient and the WebScheduler web apps of PcVue in version 15.0.0 through 16.3.3 included, allowing …

Fix: 16.3.4+
Fix from $1,600 2026-02-26
Pcvue HIGH 7.5
CVE-2026-1693

The OAuth grant type Resource Owner Password Credentials (ROPC) flow is still used by the werbservices used by the WebVue, WebScheduler, TouchVue and…

Fix: 16.3.4+
Fix from $1,950 2026-02-26
Pcvue MEDIUM 6.1
CVE-2026-1692

A missing origin validation in WebSockets vulnerability affects the GraphicalData web services used by the WebVue, WebScheduler, TouchVue and SnapVue…

Fix: 16.3.4+
Fix from $1,600 2026-02-26
Pcvue MEDIUM 6.5
CVE-2022-4311

An insertion of sensitive information into log file vulnerability exists in PcVue versions 15 through 15.2.2. This could allow a user with access to …

Fix: after 15.2.2
Fix from $1,600 2022-12-12
Pcvue MEDIUM 5.5
CVE-2022-4312

A cleartext storage of sensitive information vulnerability exists in PcVue versions 8.10 through 15.2.3. This could allow an unauthorized user with a…

Fix: after 15.2.3
Fix from $1,600 2022-12-12
Pcvue MEDIUM 5.5
CVE-2022-2569

The affected device stores sensitive information in cleartext, which may allow an authenticated user to access session data stored in the OAuth datab…

Fix: 12.0.27+
Fix from $1,600 2022-08-24
Pcvue CRITICAL 9.8
CVE-2020-26867

ARC Informatique PcVue prior to version 12.0.17 is vulnerable due to the deserialization of untrusted data, which may allow an attacker to remotely e…

Fix: 12.0.17+
Fix from $2,300 2020-10-12
Pcvue HIGH 7.5
CVE-2020-26868

ARC Informatique PcVue prior to version 12.0.17 is vulnerable to a denial-of-service attack due to the ability of an unauthorized user to modify info…

Fix: 12.0.17+
Fix from $1,950 2020-10-12
Pcvue HIGH 7.5
CVE-2020-26869

ARC Informatique PcVue prior to version 12.0.17 is vulnerable to information exposure, allowing unauthorized users to access session data of legitima…

Fix: 12.0.17+
Fix from $1,950 2020-10-12
Frontvue MEDIUM 5.8
CVE-2011-4044EPSS 26%

An unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to modify fi…

Fix: after 10.0
Fix from $1,600 2012-04-03
Frontvue HIGH 9.3
CVE-2011-4042EPSS 6%

An unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute a…

Fix: after 10.0
Fix from $1,950 2012-04-03
Frontvue HIGH 9.3
CVE-2011-4043EPSS 7%

Integer overflow in an unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote at…

Fix: after 10.0
Fix from $1,950 2012-04-03