Vulnerability index

Browse CVEs

10 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Raption Server HIGH 8.8
CVE-2020-8006

The server in Circontrol Raption through 5.11.2 has a pre-authentication stack-based buffer overflow that can be exploited to gain run-time control o…

Fix: after 5.11.2
Fix from $1,950 2024-04-12
Circarlife Firmware CRITICAL 9.8
CVE-2018-17918

Circontrol CirCarLife all versions prior to 4.3.1, authentication to the device can be bypassed by entering the URL of a specific page.

Fix: 4.3.1+
Fix from $2,300 2018-11-02
Circarlife Firmware CRITICAL 9.8
CVE-2018-17922

Circontrol CirCarLife all versions prior to 4.3.1, the PAP credentials of the device are stored in clear text in a log file that is accessible withou…

Fix: 4.3.1+
Fix from $2,300 2018-11-02
Circarlife Scada MEDIUM 6.5
CVE-2018-16672

An issue was discovered in CIRCONTROL CirCarLife before 4.3. Due to the storage of multiple sensitive information elements in a JSON format at /servi…

Fix: 4.3+
Fix from $1,600 2018-09-26
Open Charge Point Protocol CRITICAL 9.8
CVE-2018-16669

An issue was discovered in CIRCONTROL Open Charge Point Protocol (OCPP) before 1.5.0, as used in CirCarLife, PowerStudio, and other products. Due to …

Fix: 1.5.0+
Fix from $2,300 2018-09-18
Circarlife Scada MEDIUM 5.3
CVE-2018-16670EPSS 25%

An issue was discovered in CIRCONTROL CirCarLife before 4.3. There is PLC status disclosure due to lack of authentication for /html/devstat.html.

Fix: 4.3+
Fix from $1,600 2018-09-18
Circarlife Scada MEDIUM 5.3
CVE-2018-16671EPSS 9%

An issue was discovered in CIRCONTROL CirCarLife before 4.3. There is system software information disclosure due to lack of authentication for /html/…

Fix: 4.3+
Fix from $1,600 2018-09-18
Circarlife Scada MEDIUM 5.3
CVE-2018-16668EPSS 10%

An issue was discovered in CIRCONTROL CirCarLife before 4.3. There is internal installation path disclosure due to the lack of authentication for /ht…

Fix: 4.3+
Fix from $1,600 2018-09-18
Circarlife Scada CRITICAL 9.8
CVE-2018-12634EPSS 57%

CirCarLife Scada before 4.3 allows remote attackers to obtain sensitive information via a direct request for the html/log or services/system/info.htm…

Fix: 4.3+
Fix from $2,300 2018-06-22
Scada HIGH 7.5
CVE-2018-12635

CirCarLife Scada v4.2.4 allows unauthorized upgrades via requests to the html/upgrade.html and services/system/firmware.upgrade URIs.

Mitigation only
Fix from $1,950 2018-06-22