Vulnerability index

Browse CVEs

40 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Automation Runtime HIGH 7.5
CVE-2020-11637

A memory leak in the TFTP service in B&R Automation Runtime versions <N4.26, <N4.34, <F4.45, <E4.53, <D4.63, <A4.73 and prior could allow an unauthen…

Fix: after 4.10
Fix from $1,950 2020-10-15
Gatemanager 9250 Firmware MEDIUM 6.5
CVE-2020-11644

The information disclosure vulnerability present in B&R GateManager 4260 and 9250 versions <9.0.20262 and GateManager 8250 versions <9.2.620236042 al…

Fix: 9.0.20262 / 9.2.620236042+
Fix from $1,600 2020-10-15
Gatemanager 9250 Firmware MEDIUM 6.5
CVE-2020-11645

A denial of service vulnerability in B&R GateManager 4260 and 9250 versions <9.0.20262 and GateManager 8250 versions <9.2.620236042 allows authentica…

Fix: 9.0.20262 / 9.2.620236042+
Fix from $1,600 2020-10-15
Sitemanager MEDIUM 6.5
CVE-2020-11641

A local file inclusion vulnerability in B&R SiteManager versions <9.2.620236042 allows authenticated users to read sensitive files from SiteManager i…

Fix: 9.2.620236042+
Fix from $1,600 2020-10-15
Sitemanager MEDIUM 6.5
CVE-2020-11642

The local file inclusion vulnerability present in B&R SiteManager versions <9.2.620236042 allows authenticated users to impact availability of SiteMa…

Fix: 9.2.620236042+
Fix from $1,600 2020-10-15
Gatemanager 9250 Firmware MEDIUM 6.5
CVE-2020-11643

An information disclosure vulnerability in B&R GateManager 4260 and 9250 versions <9.0.20262 and GateManager 8250 versions <9.2.620236042 allows auth…

Fix: 9.0.20262 / 9.2.620236042+
Fix from $1,600 2020-10-15
Automation Studio HIGH 7.5
CVE-2019-19102

A directory traversal vulnerability in SharpZipLib used in the upgrade service in B&R Automation Studio versions 4.0.x, 4.1.x and 4.2.x allow unauthe…

Fix: after 4.2.14.119
Fix from $1,950 2020-04-29
Automation Studio HIGH 7.1
CVE-2019-19100

A privilege escalation vulnerability in the upgrade service in B&R Automation Studio versions 4.0.x, 4.1.x, 4.2.x, < 4.3.11SP, < 4.4.9SP, < 4.5.4SP, …

Fix: 4.3.11 / 4.4.9+
Fix from $1,950 2020-04-29
Automation Studio MEDIUM 5.9
CVE-2019-19101

A missing secure communication definition and an incomplete TLS validation in the upgrade service in B&R Automation Studio versions 4.0.x, 4.1.x, 4.2…

Fix: 4.3.11 / 4.4.9+
Fix from $1,600 2020-04-29
Automation Runtime CRITICAL 9.4
CVE-2019-19108

An authentication weakness in the SNMP service in B&R Automation Runtime versions 2.96, 3.00, 3.01, 3.06 to 3.10, 4.00 to 4.63, 4.72 and above allows…

Fix: after 4.63
Fix from $2,300 2020-04-20