Vulnerability index

Browse CVEs

159 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.8 CVE-2025-11739 CWE‑502: Deserialization of Untrusted Data vulnerability exists that could cause arbitrary code execution with administrative privileges when a local… Ecostruxure Power Monitoring Expert Mitigation only Fix from $1,9502026-03-10 HIGH 7.5 CVE-2024-6407 CWE-200: Information Exposure vulnerability exists that could cause disclosure of credentials when a specially crafted message is sent to the device. Whc 5918a Firmware No fix yet Fix from $1,9502024-07-11 MEDIUM 6.1 CVE-2024-6528 CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists that could cause a vulnerability le… Modicon M241 Firmware Mitigation only Fix from $1,6002024-07-11 CRITICAL 9.8 CVE-2024-37036 CWE-787: Out-of-bounds Write vulnerability exists that could result in an authentication bypass when sending a malformed POST request and particular … Sage Rtu Firmware No fix yet Fix from $2,3002024-06-12 MEDIUM 6.5 CVE-2024-5313 CWE-668: Exposure of the Resource Wrong Sphere vulnerability exists that exposes a SSH interface over the product network interface. This does not al… Evlink Home Firmware Mitigation only Fix from $1,6002024-06-12 MEDIUM 6.5 CVE-2024-5056 CWE-552: Files or Directories Accessible to External Parties vulnerability exists which may prevent user to update the device firmware and prevent pr… Modicon M340 Firmware Mitigation only Fix from $1,6002024-06-12 MEDIUM 6.1 CVE-2023-5629 A CWE-601:URL Redirection to Untrusted Site (‘Open Redirect’) vulnerability exists that could cause disclosure of information through phishing attemp… Eb450 Firmware No fix yet Fix from $1,6002023-12-14 MEDIUM 6.1 CVE-2023-5986 A CWE-601 URL Redirection to Untrusted Site vulnerability exists that could cause an openredirect vulnerability leading to a cross site scripting att… Ecostruxure Power Monitoring Expert Mitigation only Fix from $1,6002023-11-15 MEDIUM 5.3 CVE-2023-6032 A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could cause a file system enumerat… Galaxy Vl Firmware Mitigation only Fix from $1,6002023-11-15 CRITICAL 9.8 CVE-2023-5391 A CWE-502: Deserialization of untrusted data vulnerability exists that could allow an attacker to execute arbitrary code on the targeted system by se… Ecostruxure Power Monitoring Expert No fix yet Fix from $2,3002023-10-04 HIGH 7.8 CVE-2023-2569 A CWE-787: Out-of-Bounds Write vulnerability exists that could cause local denial-of-service, elevation of privilege, and potentially kernel executio… Ecostruxure Foxboro Dcs Control Core Services Mitigation only Fix from $1,9502023-06-14 HIGH 7.8 CVE-2023-2570 A CWE-129: Improper Validation of Array Index vulnerability exists that could cause local denial-of-service, and potentially kernel execution when a … Ecostruxure Foxboro Dcs Control Core Services Mitigation only Fix from $1,9502023-06-14 HIGH 8.8 CVE-2023-25556 A CWE-287: Improper Authentication vulnerability exists that could allow a device to be compromised when a key of less than seven digits is entered a… Merten Instabus Tastermodul 1fach System M Firmware Mitigation only Fix from $1,9502023-04-18 HIGH 8.8 CVE-2023-27976 A CWE-668: Exposure of Resource to Wrong Sphere vulnerability exists that could cause remote code execution when a valid user visits a malicious link… Ecostruxure Control Expert No fix yet Fix from $1,9502023-04-18 MEDIUM 5.5 CVE-2023-1548 A CWE-269: Improper Privilege Management vulnerability exists that could cause a local user to perform a denial of service through the console server… Ecostruxure Control Expert Mitigation only Fix from $1,6002023-04-18 MEDIUM 5.3 CVE-2023-0595 A CWE-117: Improper Output Neutralization for Logs vulnerability exists that could cause the misinterpretation of log files when malicious packets ar… Clearscada Mitigation only Fix from $1,6002023-02-24 CRITICAL 9.8 CVE-2022-32515 A CWE-307: Improper Restriction of Excessive Authentication Attempts vulnerability exists that could cause brute force attacks to take over the admin… Conext Combox Firmware Mitigation only Fix from $2,3002023-01-30 MEDIUM 6.5 CVE-2022-32516 A CWE-352: Cross-Site Request Forgery (CSRF) vulnerability exists that could cause system’s configurations override and cause a reboot loop when the … Conext Combox Firmware Mitigation only Fix from $1,6002023-01-30 MEDIUM 6.5 CVE-2022-32517 A CWE-1021: Improper Restriction of Rendered UI Layers or Frames vulnerability exists that could cause an adversary to trick the interface user/admin… Conext Combox Firmware Mitigation only Fix from $1,6002023-01-30 HIGH 7.6 CVE-2021-22783 A CWE-200: Information Exposure vulnerability exists which could allow a session hijack when the door panel is communicating with the door. Affected … Ritto Wiser Door Mitigation only Fix from $1,9502022-03-09 CRITICAL 9.8 CVE-2021-22801 A CWE-269: Improper Privilege Management vulnerability exists that could cause an arbitrary command execution when the software is configured with sp… Connexium Network Manager Mitigation only Fix from $2,3002022-02-11 HIGH 7.5 CVE-2021-22798 A CWE-522: Insufficiently Protected Credentials vulnerability exists that could cause Sensitive data such as login credentials being exposed when a N… Conext Combox Firmware Mitigation only Fix from $1,9502022-02-11 CRITICAL 9.8 CVE-2022-22813 A CWE-798: Use of Hard-coded Credentials vulnerability exists. If an attacker were to obtain the TLS cryptographic key and take active control of the… Easergy P141 Firmware Mitigation only Fix from $2,3002022-02-09 HIGH 7.8 CVE-2021-22817 A CWE-276: Incorrect Default Permissions vulnerability exists that could cause unauthorized access to the base installation directory leading to loca… Hmibmuhi29d2801 Firmware Mitigation only Fix from $1,9502022-02-09 CRITICAL 9.8 CVE-2021-22772 A CWE-306: Missing Authentication for Critical Function vulnerability exists in Easergy T200 ((Modbus) SC2-04MOD-07000100 and earlier), Easergy T200 … T200i Firmware Mitigation only Fix from $2,3002021-07-21 HIGH 7.5 CVE-2021-22774 A CWE-759: Use of a One-Way Hash without a Salt vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1), EVlink … Evlink City Evc1s22p4 Firmware Mitigation only Fix from $1,9502021-07-21 MEDIUM 6.5 CVE-2021-22773 A CWE-620: Unverified Password Change vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1), EVlink Parking (E… Evlink City Evc1s22p4 Firmware Mitigation only Fix from $1,6002021-07-21 CRITICAL 9.8 CVE-2021-22707EPSS 65% A CWE-798: Use of Hard-coded Credentials vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1), EVlink Parking… Evlink City Evc1s22p4 Firmware Mitigation only Fix from $2,3002021-07-21 CRITICAL 9.8 CVE-2021-22727 A CWE-331: Insufficient Entropy vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1), EVlink Parking (EVW2 / … Evlink City Evc1s22p4 Firmware Mitigation only Fix from $2,3002021-07-21 CRITICAL 9.8 CVE-2021-22729 A CWE-259: Use of Hard-coded Password vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1), EVlink Parking (E… Evlink City Evc1s22p4 Firmware Mitigation only Fix from $2,3002021-07-21