Vulnerability index

Browse CVEs

286 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Dialink HIGH 7.8
CVE-2021-38420

Delta Electronics DIALink versions 1.2.4.0 and prior default permissions give extensive permissions to low-privileged user accounts, which may allow …

Fix: after 1.2.4.0
Fix from $1,950 2021-11-03
Dialink HIGH 7.8
CVE-2021-38422

Delta Electronics DIALink versions 1.2.4.0 and prior stores sensitive information in cleartext, which may allow an attacker to have extensive access …

Fix: after 1.2.4.0
Fix from $1,950 2021-11-03
Dialink HIGH 7.8
CVE-2021-38424

The tag interface of Delta Electronics DIALink versions 1.2.4.0 and prior is vulnerable to an attacker injecting formulas into the tag data. Those fo…

Fix: after 1.2.4.0
Fix from $1,950 2021-11-03
Dialink MEDIUM 5.9
CVE-2021-38418

Delta Electronics DIALink versions 1.2.4.0 and prior runs by default on HTTP, which may allow an attacker to be positioned between the traffic and pe…

Fix: after 1.2.4.0
Fix from $1,600 2021-11-03
Dopsoft HIGH 7.8
CVE-2021-38402EPSS 8%

Delta Electronic DOPSoft 2 (Version 2.00.07 and prior) lacks proper validation of user-supplied data when parsing specific project files. This could …

Fix: after 2.00.07
Fix from $1,950 2021-09-17
Dopsoft HIGH 7.8
CVE-2021-38404

Delta Electronic DOPSoft 2 (Version 2.00.07 and prior) lacks proper validation of user-supplied data when parsing specific project files. This could …

Fix: after 2.00.07
Fix from $1,950 2021-09-17
Dopsoft HIGH 7.8
CVE-2021-38406 KEVEPSS 78%

Delta Electronic DOPSoft 2 (Version 2.00.07 and prior) lacks proper validation of user-supplied data when parsing specific project files. This could …

Fix: after 2.00.07
Fix from $1,950 2021-09-17
Diaenergie CRITICAL 9.8
CVE-2021-32955EPSS 37%

Delta Electronics DIAEnergie Version 1.7.5 and prior allows unrestricted file uploads, which may allow an attacker to remotely execute code.

Fix: after 1.7.5
Fix from $2,300 2021-08-30
Diaenergie CRITICAL 9.8
CVE-2021-32967

Delta Electronics DIAEnergie Version 1.7.5 and prior may allow an attacker to add a new administrative user without being authenticated or authorized…

Fix: after 1.7.5
Fix from $2,300 2021-08-30
Diaenergie CRITICAL 9.8
CVE-2021-32983

A Blind SQL injection vulnerability exists in the /DataHandler/Handler_CFG.ashx endpoint of Delta Electronics DIAEnergie Version 1.7.5 and prior. The…

Fix: after 1.7.5
Fix from $2,300 2021-08-30
Diaenergie CRITICAL 9.8
CVE-2021-38390EPSS 20%

A Blind SQL injection vulnerability exists in the /DataHandler/HandlerEnergyType.ashx endpoint of Delta Electronics DIAEnergie Version 1.7.5 and prio…

Fix: after 1.7.5
Fix from $2,300 2021-08-30
Diaenergie CRITICAL 9.8
CVE-2021-38391

A Blind SQL injection vulnerability exists in the /DataHandler/AM/AM_Handler.ashx endpoint of Delta Electronics DIAEnergie Version 1.7.5 and prior. T…

Fix: after 1.7.5
Fix from $2,300 2021-08-30
Diaenergie CRITICAL 9.8
CVE-2021-38393EPSS 18%

A Blind SQL injection vulnerability exists in the /DataHandler/HandlerAlarmGroup.ashx endpoint of Delta Electronics DIAEnergie Version 1.7.5 and prio…

Fix: after 1.7.5
Fix from $2,300 2021-08-30
Tpeditor HIGH 7.8
CVE-2021-33007

A heap-based buffer overflow in Delta Electronics TPEditor: v1.98.06 and prior may be exploited by processing a specially crafted project file. Succe…

Fix: after 1.98.06
Fix from $1,950 2021-08-30
Dopsoft HIGH 7.8
CVE-2021-33019

A stack-based buffer overflow vulnerability in Delta Electronics DOPSoft Version 4.00.11 and prior may be exploited by processing a specially crafted…

Fix: after 4.00.11
Fix from $1,950 2021-08-30
Diaenergie MEDIUM 5.5
CVE-2021-33003

Delta Electronics DIAEnergie Version 1.7.5 and prior may allow an attacker to retrieve passwords in cleartext due to a weak hashing algorithm.

Fix: after 1.7.5
Fix from $1,600 2021-08-30
Dopsoft HIGH 7.8
CVE-2021-27412

Delta Electronics DOPSoft Versions 4.0.10.17 and prior are vulnerable to an out-of-bounds read, which may allow an attacker to execute arbitrary code.

Fix: after 4.0.10.17
Fix from $1,950 2021-07-02
Dopsoft MEDIUM 5.5
CVE-2021-27455

Delta Electronics DOPSoft Versions 4.0.10.17 and prior are vulnerable to an out-of-bounds read while processing project files, which may allow an att…

Fix: after 4.0.10.17
Fix from $1,600 2021-07-02
Cncsoft Screeneditor CRITICAL 9.8
CVE-2021-22668

Delta Industrial Automation CNCSoft ScreenEditor Versions 1.01.28 (with ScreenEditor Version 1.01.2) and prior are vulnerable to an out-of-bounds rea…

Fix: after 1.01.28
Fix from $2,300 2021-05-16
Cncsoft Screeneditor HIGH 7.8
CVE-2021-22672EPSS 10%

Delta Electronics' CNCSoft ScreenEditor in versions prior to v1.01.30 could allow the corruption of data, a denial-of-service condition, or code exec…

Fix: 1.01.30+
Fix from $1,950 2021-05-10
Industrial Automation Commgr CRITICAL 9.8
CVE-2021-27480

Delta Industrial Automation COMMGR Versions 1.12 and prior are vulnerable to a stack-based buffer overflow, which may allow an attacker to execute re…

Fix: after 1.12
Fix from $2,300 2021-04-27
Ispsoft HIGH 7.8
CVE-2020-27280

A use after free issue has been identified in the way ISPSoft(v3.12 and prior) processes project files, allowing an attacker to craft a special proje…

Fix: after 3.12
Fix from $1,950 2021-01-26
Tpeditor HIGH 7.8
CVE-2020-27284

TPEditor (v1.98 and prior) is vulnerable to two out-of-bounds write instances in the way it processes project files, allowing an attacker to craft a …

Fix: after 1.98
Fix from $1,950 2021-01-26
Tpeditor HIGH 7.8
CVE-2020-27288

An untrusted pointer dereference has been identified in the way TPEditor(v1.98 and prior) processes project files, allowing an attacker to craft a sp…

Fix: after 1.98
Fix from $1,950 2021-01-26
Dopsoft HIGH 7.8
CVE-2020-27275

Delta Electronics DOPSoft Version 4.0.8.21 and prior is vulnerable to an out-of-bounds write while processing project files, which may allow an attac…

Fix: after 4.0.8.21
Fix from $1,950 2021-01-11
Dopsoft HIGH 7.8
CVE-2020-27277

Delta Electronics DOPSoft Version 4.0.8.21 and prior has a null pointer dereference issue while processing project files, which may allow an attacker…

Fix: after 4.0.8.21
Fix from $1,950 2021-01-11
Cncsoft Screeneditor HIGH 7.8
CVE-2020-27281

A stack-based buffer overflow may exist in Delta Electronics CNCSoft ScreenEditor versions 1.01.26 and prior when processing specially crafted projec…

Fix: after 1.01.26
Fix from $1,950 2021-01-11
Cncsoft B HIGH 7.8
CVE-2020-27287

Delta Electronics CNCSoft-B Versions 1.0.0.2 and prior is vulnerable to an out-of-bounds write while processing project files, which may allow an att…

Fix: after 1.0.0.2
Fix from $1,950 2021-01-11
Cncsoft B HIGH 7.8
CVE-2020-27289

Delta Electronics CNCSoft-B Versions 1.0.0.2 and prior has a null pointer dereference issue while processing project files, which may allow an attack…

Fix: after 1.0.0.2
Fix from $1,950 2021-01-11
Cncsoft B HIGH 7.8
CVE-2020-27291

Delta Electronics CNCSoft-B Versions 1.0.0.2 and prior is vulnerable to an out-of-bounds read while processing project files, which may allow an atta…

Fix: after 1.0.0.2
Fix from $1,950 2021-01-11