Vulnerability index

Browse CVEs

19 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Wonderware Information Server HIGH 7.8
CVE-2014-2380

Schneider Electric Wonderware Information Server (WIS) Portal 4.0 SP1 through 5.5 uses weak encryption, which allows remote attackers to obtain sensi…

Mitigation only
Fix from $1,950 2014-08-28
Wonderware Information Server HIGH 7.5
CVE-2014-5399

SQL injection vulnerability in Schneider Electric Wonderware Information Server (WIS) Portal 4.0 SP1 through 5.5 allows remote attackers to execute a…

Mitigation only
Fix from $1,950 2014-08-28
Wonderware Intouch MEDIUM 6.9
CVE-2012-4709

Invensys Wonderware InTouch HMI 2012 R2 and earlier allows remote attackers to read arbitrary files, send HTTP requests to intranet servers, or cause…

Fix: after 2012
Fix from $1,600 2013-10-13
Wonderware Information Server HIGH 9.3
CVE-2013-0685

Invensys Wonderware Information Server (WIS) 4.0 SP1SP1, 4.5- Portal, and 5.0- Portal does not restrict unspecified size and amount values, which all…

Mitigation only
Fix from $1,950 2013-05-09
Wonderware Information Server HIGH 9.3
CVE-2013-0686

Invensys Wonderware Information Server (WIS) 4.0 SP1SP1, 4.5- Portal, and 5.0- Portal allows remote attackers to read arbitrary files, send HTTP requ…

Mitigation only
Fix from $1,950 2013-05-09
Wonderware Information Server HIGH 7.5
CVE-2013-0684

SQL injection vulnerability in Invensys Wonderware Information Server (WIS) 4.0 SP1SP1, 4.5- Portal, and 5.0- Portal allows remote attackers to execu…

Mitigation only
Fix from $1,950 2013-05-09
Wonderware Win Xml Exporter HIGH 9.3
CVE-2012-4710

Invensys Wonderware Win-XML Exporter 1522.148.0.0 allows remote attackers to read arbitrary files, send HTTP requests to intranet servers, or cause a…

Mitigation only
Fix from $1,950 2013-04-04
Foxboro Control Software MEDIUM 6.9
CVE-2012-3005

Untrusted search path vulnerability in Invensys Wonderware InTouch 2012 and earlier, as used in Wonderware Application Server, Wonderware Information…

Fix: after 2012
Fix from $1,600 2012-07-26
Dasabcip MEDIUM 5.0
CVE-2012-3007

Stack-based buffer overflow in slssvc.exe before 58.x in Invensys Wonderware SuiteLink in the Invensys System Platform software suite, as used in InT…

Fix: after 10.0
Fix from $1,600 2012-07-05
Intouch MEDIUM 5.0
CVE-2012-3847

slssvc.exe in Invensys Wonderware SuiteLink in Invensys InTouch 2012 and Wonderware Application Server 2012 allows remote attackers to cause a denial…

Mitigation only
Fix from $1,600 2012-07-05
Archestra Application Object Toolkit MEDIUM 6.8
CVE-2012-0257

Heap-based buffer overflow in the WWCabFile ActiveX component in the Wonderware System Platform in Invensys Wonderware Application Server 2012 and ea…

Fix: after 2012
Fix from $1,600 2012-04-02
Archestra Application Object Toolkit MEDIUM 6.8
CVE-2012-0258

Heap-based buffer overflow in the WWCabFile ActiveX component in the Wonderware System Platform in Invensys Wonderware Application Server 2012 and ea…

Fix: after 2012
Fix from $1,600 2012-04-02
Wonderware Information Server HIGH 7.5
CVE-2012-0226

SQL injection vulnerability in Invensys Wonderware Information Server 4.0 SP1 and 4.5 allows remote attackers to execute arbitrary SQL commands via u…

Mitigation only
Fix from $1,950 2012-04-02
Wonderware Information Server HIGH 7.5
CVE-2012-0228

Invensys Wonderware Information Server 4.0 SP1 and 4.5 does not properly implement client controls, which allows remote attackers to bypass intended …

Mitigation only
Fix from $1,950 2012-04-02
Wonderware Inbatch MEDIUM 6.8
CVE-2011-4870

Multiple buffer overflows in the (1) GUIControls, (2) BatchObjSrv, and (3) BatchSecCtrl ActiveX controls in Invensys Wonderware InBatch 9.0 and 9.0 S…

Mitigation only
Fix from $1,600 2012-01-08
Wonderware Inbatch HIGH 9.3
CVE-2011-3141

Buffer overflow in the InBatch BatchField ActiveX control for Invensys Wonderware InBatch 8.1 SP1, 9.0, and 9.0 SP1 allows remote attackers to cause …

Mitigation only
Fix from $1,950 2011-08-16
Wonderware Information Server HIGH 9.3
CVE-2011-2962

Multiple stack-based buffer overflows in Invensys Wonderware Information Server 3.1, 4.0, and 4.0 SP1 allow remote attackers to cause a denial of ser…

Mitigation only
Fix from $1,950 2011-07-29
Wonderware Inbatch HIGH 10.0
CVE-2010-4557EPSS 12%

Buffer overflow in the lm_tcp service in Invensys Wonderware InBatch 8.1 and 9.0, as used in Invensys Foxboro I/A Series Batch 8.1 and possibly other…

No fix yet
Fix from $1,950 2010-12-17
Wonderware Archestra Configuration Access Component Activex Control HIGH 9.3
CVE-2010-2974

Stack-based buffer overflow in the IConfigurationAccess interface in the Invensys Wonderware Archestra ConfigurationAccessComponent ActiveX control i…

Fix: after 3.1
Fix from $1,950 2010-08-05