Vulnerability index

Browse CVEs

20 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.1 CVE-2024-5849 An unauthenticated remote attacker may use a reflected XSS vulnerability to obtain information from a user or reboot the affected device once. Icdm Rx\/tcp Socketserver Firmware 1.0.7 / 1.08+ Fix from $1,9502024-08-13 HIGH 7.1 CVE-2024-38502 An unauthenticated remote attacker may use stored XSS vulnerability to obtain information from a user or reboot the affected device once. Icdm Rx\/tcp Socketserver Firmware 1.0.7 / 1.08+ Fix from $1,9502024-08-13 MEDIUM 6.1 CVE-2024-38501 An unauthenticated remote attacker may use a HTML injection vulnerability with limited length to inject malicious HTML code and gain low-privileged a… Icdm Rx\/tcp Socketserver Firmware 1.0.7 / 1.08+ Fix from $1,6002024-08-13 CRITICAL 9.8 CVE-2024-6422 An unauthenticated remote attacker can manipulate the device via Telnet, stop processes, read, delete and change data. Oit700 F113 B12 Cb Firmware after 2.11.0 Fix from $2,3002024-07-10 HIGH 7.5 CVE-2024-6421 An unauthenticated remote attacker can read out sensitive device information through a incorrectly configured FTP service. Oit700 F113 B12 Cb Firmware after 2.11.0 Fix from $1,9502024-07-10 CRITICAL 9.8 CVE-2021-34565 In PEPPERL+FUCHS WirelessHART-Gateway 3.0.7 to 3.0.9 the SSH and telnet services are active with hard-coded credentials. Wha Gw F2d2 0 As Z2 Eth Firmware after 3.0.9 Fix from $2,3002021-08-31 HIGH 8.8 CVE-2021-34561 In PEPPERL+FUCHS WirelessHART-Gateway <= 3.0.8 serious issue exists, if the application is not externally accessible or uses IP-based access restrict… Wha Gw F2d2 0 As Z2 Eth Firmware after 3.0.8 Fix from $1,9502021-08-31 HIGH 7.5 CVE-2021-33555 In PEPPERL+FUCHS WirelessHART-Gateway <= 3.0.7 the filename parameter is vulnerable to unauthenticated path traversal attacks, enabling read access t… Wha Gw F2d2 0 As Z2 Eth Firmware after 3.0.7 Fix from $1,9502021-08-31 MEDIUM 6.1 CVE-2021-34562 In PEPPERL+FUCHS WirelessHART-Gateway 3.0.8 it is possible to inject arbitrary JavaScript into the application's response. Wha Gw F2d2 0 As Z2 Eth Firmware Mitigation only Fix from $1,6002021-08-31 MEDIUM 5.5 CVE-2021-34560 In PEPPERL+FUCHS WirelessHART-Gateway <= 3.0.9 a form contains a password field with autocomplete enabled. The stored credentials can be captured by … Wha Gw F2d2 0 As Z2 Eth Firmware after 3.0.9 Fix from $1,6002021-08-31 MEDIUM 5.5 CVE-2021-34564 Any cookie-stealing vulnerabilities within the application or browser would enable an attacker to steal the user's credentials to the PEPPERL+FUCHS W… Wha Gw F2d2 0 As Z2 Eth Firmware No fix yet Fix from $1,6002021-08-31 MEDIUM 5.3 CVE-2021-34559 In PEPPERL+FUCHS WirelessHART-Gateway <= 3.0.8 a vulnerability may allow remote attackers to rewrite links and URLs in cached pages to arbitrary stri… Wha Gw F2d2 0 As Z2 Eth Firmware after 3.0.8 Fix from $1,6002021-08-31 HIGH 8.8 CVE-2020-12513EPSS 31% Pepperl+Fuchs Comtrol IO-Link Master in Version 1.5.48 and below is prone to an authenticated blind OS Command Injection. Io Link Master 4 Eip Firmware after 1.5.48 Fix from $1,9502021-01-22 MEDIUM 5.4 CVE-2020-12512 Pepperl+Fuchs Comtrol IO-Link Master in Version 1.5.48 and below is prone to an authenticated reflected POST Cross-Site Scripting Io Link Master 4 Eip Firmware after 1.5.48 Fix from $1,6002021-01-22 HIGH 8.8 CVE-2020-12511 Pepperl+Fuchs Comtrol IO-Link Master in Version 1.5.48 and below is prone to a Cross-Site Request Forgery (CSRF) in the web interface. Io Link Master 4 Eip Firmware after 1.5.48 Fix from $1,9502021-01-22 CRITICAL 9.8 CVE-2020-12500 Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES… Es7510 Xt Firmware No fix yet Fix from $2,3002020-10-15 CRITICAL 9.8 CVE-2020-12501 Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES… Es7510 Xt Firmware No fix yet Fix from $2,3002020-10-15 CRITICAL 9.8 CVE-2020-12504 Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES… Es7510 Xt Firmware 2.1.1+ Fix from $2,3002020-10-15 HIGH 8.8 CVE-2020-12502 Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES… Es7510 Xt Firmware No fix yet Fix from $1,9502020-10-15 HIGH 7.2 CVE-2020-12503EPSS 23% Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES… Es7510 Xt Firmware No fix yet Fix from $1,9502020-10-15