Vulnerability index

Browse CVEs

19 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.8 CVE-2014-2380 Schneider Electric Wonderware Information Server (WIS) Portal 4.0 SP1 through 5.5 uses weak encryption, which allows remote attackers to obtain sensi… Wonderware Information Server Mitigation only Fix from $1,9502014-08-28 HIGH 7.5 CVE-2014-5399 SQL injection vulnerability in Schneider Electric Wonderware Information Server (WIS) Portal 4.0 SP1 through 5.5 allows remote attackers to execute a… Wonderware Information Server Mitigation only Fix from $1,9502014-08-28 MEDIUM 6.9 CVE-2012-4709 Invensys Wonderware InTouch HMI 2012 R2 and earlier allows remote attackers to read arbitrary files, send HTTP requests to intranet servers, or cause… Wonderware Intouch after 2012 Fix from $1,6002013-10-13 HIGH 9.3 CVE-2013-0685 Invensys Wonderware Information Server (WIS) 4.0 SP1SP1, 4.5- Portal, and 5.0- Portal does not restrict unspecified size and amount values, which all… Wonderware Information Server Mitigation only Fix from $1,9502013-05-09 HIGH 9.3 CVE-2013-0686 Invensys Wonderware Information Server (WIS) 4.0 SP1SP1, 4.5- Portal, and 5.0- Portal allows remote attackers to read arbitrary files, send HTTP requ… Wonderware Information Server Mitigation only Fix from $1,9502013-05-09 HIGH 7.5 CVE-2013-0684 SQL injection vulnerability in Invensys Wonderware Information Server (WIS) 4.0 SP1SP1, 4.5- Portal, and 5.0- Portal allows remote attackers to execu… Wonderware Information Server Mitigation only Fix from $1,9502013-05-09 HIGH 9.3 CVE-2012-4710 Invensys Wonderware Win-XML Exporter 1522.148.0.0 allows remote attackers to read arbitrary files, send HTTP requests to intranet servers, or cause a… Wonderware Win Xml Exporter Mitigation only Fix from $1,9502013-04-04 MEDIUM 6.9 CVE-2012-3005 Untrusted search path vulnerability in Invensys Wonderware InTouch 2012 and earlier, as used in Wonderware Application Server, Wonderware Information… Foxboro Control Software after 2012 Fix from $1,6002012-07-26 MEDIUM 5.0 CVE-2012-3007 Stack-based buffer overflow in slssvc.exe before 58.x in Invensys Wonderware SuiteLink in the Invensys System Platform software suite, as used in InT… Dasabcip after 10.0 Fix from $1,6002012-07-05 MEDIUM 5.0 CVE-2012-3847 slssvc.exe in Invensys Wonderware SuiteLink in Invensys InTouch 2012 and Wonderware Application Server 2012 allows remote attackers to cause a denial… Intouch Mitigation only Fix from $1,6002012-07-05 MEDIUM 6.8 CVE-2012-0257 Heap-based buffer overflow in the WWCabFile ActiveX component in the Wonderware System Platform in Invensys Wonderware Application Server 2012 and ea… Archestra Application Object Toolkit after 2012 Fix from $1,6002012-04-02 MEDIUM 6.8 CVE-2012-0258 Heap-based buffer overflow in the WWCabFile ActiveX component in the Wonderware System Platform in Invensys Wonderware Application Server 2012 and ea… Archestra Application Object Toolkit after 2012 Fix from $1,6002012-04-02 HIGH 7.5 CVE-2012-0226 SQL injection vulnerability in Invensys Wonderware Information Server 4.0 SP1 and 4.5 allows remote attackers to execute arbitrary SQL commands via u… Wonderware Information Server Mitigation only Fix from $1,9502012-04-02 HIGH 7.5 CVE-2012-0228 Invensys Wonderware Information Server 4.0 SP1 and 4.5 does not properly implement client controls, which allows remote attackers to bypass intended … Wonderware Information Server Mitigation only Fix from $1,9502012-04-02 MEDIUM 6.8 CVE-2011-4870 Multiple buffer overflows in the (1) GUIControls, (2) BatchObjSrv, and (3) BatchSecCtrl ActiveX controls in Invensys Wonderware InBatch 9.0 and 9.0 S… Wonderware Inbatch Mitigation only Fix from $1,6002012-01-08 HIGH 9.3 CVE-2011-3141 Buffer overflow in the InBatch BatchField ActiveX control for Invensys Wonderware InBatch 8.1 SP1, 9.0, and 9.0 SP1 allows remote attackers to cause … Wonderware Inbatch Mitigation only Fix from $1,9502011-08-16 HIGH 9.3 CVE-2011-2962 Multiple stack-based buffer overflows in Invensys Wonderware Information Server 3.1, 4.0, and 4.0 SP1 allow remote attackers to cause a denial of ser… Wonderware Information Server Mitigation only Fix from $1,9502011-07-29 HIGH 10.0 CVE-2010-4557EPSS 12% Buffer overflow in the lm_tcp service in Invensys Wonderware InBatch 8.1 and 9.0, as used in Invensys Foxboro I/A Series Batch 8.1 and possibly other… Wonderware Inbatch No fix yet Fix from $1,9502010-12-17 HIGH 9.3 CVE-2010-2974 Stack-based buffer overflow in the IConfigurationAccess interface in the Invensys Wonderware Archestra ConfigurationAccessComponent ActiveX control i… Wonderware Archestra Configuration Access Component Activex Control after 3.1 Fix from $1,9502010-08-05