Vulnerability index

Browse CVEs

286 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.8 CVE-2021-38420 Delta Electronics DIALink versions 1.2.4.0 and prior default permissions give extensive permissions to low-privileged user accounts, which may allow … Dialink after 1.2.4.0 Fix from $1,9502021-11-03 HIGH 7.8 CVE-2021-38422 Delta Electronics DIALink versions 1.2.4.0 and prior stores sensitive information in cleartext, which may allow an attacker to have extensive access … Dialink after 1.2.4.0 Fix from $1,9502021-11-03 HIGH 7.8 CVE-2021-38424 The tag interface of Delta Electronics DIALink versions 1.2.4.0 and prior is vulnerable to an attacker injecting formulas into the tag data. Those fo… Dialink after 1.2.4.0 Fix from $1,9502021-11-03 MEDIUM 5.9 CVE-2021-38418 Delta Electronics DIALink versions 1.2.4.0 and prior runs by default on HTTP, which may allow an attacker to be positioned between the traffic and pe… Dialink after 1.2.4.0 Fix from $1,6002021-11-03 HIGH 7.8 CVE-2021-38402EPSS 8% Delta Electronic DOPSoft 2 (Version 2.00.07 and prior) lacks proper validation of user-supplied data when parsing specific project files. This could … Dopsoft after 2.00.07 Fix from $1,9502021-09-17 HIGH 7.8 CVE-2021-38404 Delta Electronic DOPSoft 2 (Version 2.00.07 and prior) lacks proper validation of user-supplied data when parsing specific project files. This could … Dopsoft after 2.00.07 Fix from $1,9502021-09-17 HIGH 7.8 CVE-2021-38406 KEVEPSS 78% Delta Electronic DOPSoft 2 (Version 2.00.07 and prior) lacks proper validation of user-supplied data when parsing specific project files. This could … Dopsoft after 2.00.07 Fix from $1,9502021-09-17 CRITICAL 9.8 CVE-2021-32955EPSS 37% Delta Electronics DIAEnergie Version 1.7.5 and prior allows unrestricted file uploads, which may allow an attacker to remotely execute code. Diaenergie after 1.7.5 Fix from $2,3002021-08-30 CRITICAL 9.8 CVE-2021-32967 Delta Electronics DIAEnergie Version 1.7.5 and prior may allow an attacker to add a new administrative user without being authenticated or authorized… Diaenergie after 1.7.5 Fix from $2,3002021-08-30 CRITICAL 9.8 CVE-2021-32983 A Blind SQL injection vulnerability exists in the /DataHandler/Handler_CFG.ashx endpoint of Delta Electronics DIAEnergie Version 1.7.5 and prior. The… Diaenergie after 1.7.5 Fix from $2,3002021-08-30 CRITICAL 9.8 CVE-2021-38390EPSS 20% A Blind SQL injection vulnerability exists in the /DataHandler/HandlerEnergyType.ashx endpoint of Delta Electronics DIAEnergie Version 1.7.5 and prio… Diaenergie after 1.7.5 Fix from $2,3002021-08-30 CRITICAL 9.8 CVE-2021-38391 A Blind SQL injection vulnerability exists in the /DataHandler/AM/AM_Handler.ashx endpoint of Delta Electronics DIAEnergie Version 1.7.5 and prior. T… Diaenergie after 1.7.5 Fix from $2,3002021-08-30 CRITICAL 9.8 CVE-2021-38393EPSS 18% A Blind SQL injection vulnerability exists in the /DataHandler/HandlerAlarmGroup.ashx endpoint of Delta Electronics DIAEnergie Version 1.7.5 and prio… Diaenergie after 1.7.5 Fix from $2,3002021-08-30 HIGH 7.8 CVE-2021-33007 A heap-based buffer overflow in Delta Electronics TPEditor: v1.98.06 and prior may be exploited by processing a specially crafted project file. Succe… Tpeditor after 1.98.06 Fix from $1,9502021-08-30 HIGH 7.8 CVE-2021-33019 A stack-based buffer overflow vulnerability in Delta Electronics DOPSoft Version 4.00.11 and prior may be exploited by processing a specially crafted… Dopsoft after 4.00.11 Fix from $1,9502021-08-30 MEDIUM 5.5 CVE-2021-33003 Delta Electronics DIAEnergie Version 1.7.5 and prior may allow an attacker to retrieve passwords in cleartext due to a weak hashing algorithm. Diaenergie after 1.7.5 Fix from $1,6002021-08-30 HIGH 7.8 CVE-2021-27412 Delta Electronics DOPSoft Versions 4.0.10.17 and prior are vulnerable to an out-of-bounds read, which may allow an attacker to execute arbitrary code. Dopsoft after 4.0.10.17 Fix from $1,9502021-07-02 MEDIUM 5.5 CVE-2021-27455 Delta Electronics DOPSoft Versions 4.0.10.17 and prior are vulnerable to an out-of-bounds read while processing project files, which may allow an att… Dopsoft after 4.0.10.17 Fix from $1,6002021-07-02 CRITICAL 9.8 CVE-2021-22668 Delta Industrial Automation CNCSoft ScreenEditor Versions 1.01.28 (with ScreenEditor Version 1.01.2) and prior are vulnerable to an out-of-bounds rea… Cncsoft Screeneditor after 1.01.28 Fix from $2,3002021-05-16 HIGH 7.8 CVE-2021-22672EPSS 10% Delta Electronics' CNCSoft ScreenEditor in versions prior to v1.01.30 could allow the corruption of data, a denial-of-service condition, or code exec… Cncsoft Screeneditor 1.01.30+ Fix from $1,9502021-05-10 CRITICAL 9.8 CVE-2021-27480 Delta Industrial Automation COMMGR Versions 1.12 and prior are vulnerable to a stack-based buffer overflow, which may allow an attacker to execute re… Industrial Automation Commgr after 1.12 Fix from $2,3002021-04-27 HIGH 7.8 CVE-2020-27280 A use after free issue has been identified in the way ISPSoft(v3.12 and prior) processes project files, allowing an attacker to craft a special proje… Ispsoft after 3.12 Fix from $1,9502021-01-26 HIGH 7.8 CVE-2020-27284 TPEditor (v1.98 and prior) is vulnerable to two out-of-bounds write instances in the way it processes project files, allowing an attacker to craft a … Tpeditor after 1.98 Fix from $1,9502021-01-26 HIGH 7.8 CVE-2020-27288 An untrusted pointer dereference has been identified in the way TPEditor(v1.98 and prior) processes project files, allowing an attacker to craft a sp… Tpeditor after 1.98 Fix from $1,9502021-01-26 HIGH 7.8 CVE-2020-27275 Delta Electronics DOPSoft Version 4.0.8.21 and prior is vulnerable to an out-of-bounds write while processing project files, which may allow an attac… Dopsoft after 4.0.8.21 Fix from $1,9502021-01-11 HIGH 7.8 CVE-2020-27277 Delta Electronics DOPSoft Version 4.0.8.21 and prior has a null pointer dereference issue while processing project files, which may allow an attacker… Dopsoft after 4.0.8.21 Fix from $1,9502021-01-11 HIGH 7.8 CVE-2020-27281 A stack-based buffer overflow may exist in Delta Electronics CNCSoft ScreenEditor versions 1.01.26 and prior when processing specially crafted projec… Cncsoft Screeneditor after 1.01.26 Fix from $1,9502021-01-11 HIGH 7.8 CVE-2020-27287 Delta Electronics CNCSoft-B Versions 1.0.0.2 and prior is vulnerable to an out-of-bounds write while processing project files, which may allow an att… Cncsoft B after 1.0.0.2 Fix from $1,9502021-01-11 HIGH 7.8 CVE-2020-27289 Delta Electronics CNCSoft-B Versions 1.0.0.2 and prior has a null pointer dereference issue while processing project files, which may allow an attack… Cncsoft B after 1.0.0.2 Fix from $1,9502021-01-11 HIGH 7.8 CVE-2020-27291 Delta Electronics CNCSoft-B Versions 1.0.0.2 and prior is vulnerable to an out-of-bounds read while processing project files, which may allow an atta… Cncsoft B after 1.0.0.2 Fix from $1,9502021-01-11