Vulnerability index

Browse CVEs

159 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2021-22730 A CWE-798: Use of Hard-coded Credentials vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1), EVlink Parking… Evlink City Evc1s22p4 Firmware Mitigation only Fix from $2,3002021-07-21 HIGH 8.1 CVE-2021-22726 A CWE-918: Server-Side Request Forgery (SSRF) vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1), EVlink Pa… Evlink City Evc1s22p4 Firmware Mitigation only Fix from $1,9502021-07-21 HIGH 7.2 CVE-2021-22708 A CWE-347: Improper Verification of Cryptographic Signature vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0… Evlink City Evc1s22p4 Firmware Mitigation only Fix from $1,9502021-07-21 MEDIUM 6.5 CVE-2021-22728 A CWE-200: Information Exposure vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1), EVlink Parking (EVW2 / … Evlink City Evc1s22p4 Firmware Mitigation only Fix from $1,6002021-07-21 MEDIUM 6.1 CVE-2021-22706 A CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists in EVlink City (EVC1S22P4 / EVC1S… Evlink City Evc1s22p4 Firmware Mitigation only Fix from $1,6002021-07-21 MEDIUM 6.1 CVE-2021-22723 A CWE-79: Improper Neutralization of Input During Web Page Generation (Cross-siteScripting) through Cross-Site Request Forgery (CSRF) vulnerability e… Evlink City Evc1s22p4 Firmware Mitigation only Fix from $1,6002021-07-21 MEDIUM 5.4 CVE-2021-22722 A CWE-79: Improper Neutralization of Input During Web Page Generation ('Stored Cross-site Scripting') vulnerability exists in EVlink City (EVC1S22P4 … Evlink City Evc1s22p4 Firmware Mitigation only Fix from $1,6002021-07-21 MEDIUM 5.3 CVE-2021-22721 A CWE-200: Information Exposure vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1), EVlink Parking (EVW2 / … Evlink City Evc1s22p4 Firmware Mitigation only Fix from $1,6002021-07-21 CRITICAL 9.8 CVE-2021-22765 A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic EGX300 (All Versions) that co… Powerlogic Egx100 Firmware Mitigation only Fix from $2,3002021-06-11 CRITICAL 9.8 CVE-2021-22767 A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic EGX300 (All Versions) that co… Powerlogic Egx100 Firmware Mitigation only Fix from $2,3002021-06-11 CRITICAL 9.8 CVE-2021-22768 A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic EGX300 (All Versions) that co… Powerlogic Egx100 Firmware Mitigation only Fix from $2,3002021-06-11 HIGH 7.5 CVE-2021-22766 A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic EGX300 (All Versions) that co… Powerlogic Egx100 Firmware Mitigation only Fix from $1,9502021-06-11 MEDIUM 5.3 CVE-2021-22749 A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists in Modicon X80 BMXNOR0200H RTU SV1.70 IR22 and prior that … Modicon X80 Bmxnor0200h Rtu Firmware Mitigation only Fix from $1,6002021-06-11 HIGH 8.6 CVE-2020-7560 A CWE-123: Write-what-where Condition vulnerability exists in EcoStruxure™ Control Expert (all versions) and Unity Pro (former name of EcoStruxure™ C… Ecostruxure Control Expert Mitigation only Fix from $1,9502020-12-11 MEDIUM 5.5 CVE-2020-28214 A CWE-760: Use of a One-Way Hash with a Predictable Salt vulnerability exists in Modicon M221 (all references, all versions), that could allow an att… Modicon M221 Firmware Mitigation only Fix from $1,6002020-12-11 HIGH 8.8 CVE-2020-7547 A CWE-284: Improper Access Control vulnerability exists in EcoStruxureª and SmartStruxureª Power Monitoring and SCADA Software (see security notifica… Ecostruxure Energy Expert Mitigation only Fix from $1,9502020-12-01 HIGH 7.2 CVE-2020-7545 A CWE-284:Improper Access Control vulnerability exists in EcoStruxureª and SmartStruxureª Power Monitoring and SCADA Software (see security notificat… Ecostruxure Energy Expert Mitigation only Fix from $1,9502020-12-01 MEDIUM 5.4 CVE-2020-7546 A CWE-79: Improper Neutralization of Input During Web Page Generation vulnerability exists in EcoStruxureª and SmartStruxureª Power Monitoring and SC… Ecostruxure Energy Expert Mitigation only Fix from $1,6002020-12-01 HIGH 7.3 CVE-2020-7566 A CWE-334: Small Space of Random Values vulnerability exists in Modicon M221 (all references, all versions) that could allow the attacker to break th… Modicon M221 Firmware Mitigation only Fix from $1,9502020-11-19 MEDIUM 5.7 CVE-2020-7567 A CWE-311: Missing Encryption of Sensitive Data vulnerability exists in Modicon M221 (all references, all versions) that could allow the attacker to … Modicon M221 Firmware Mitigation only Fix from $1,6002020-11-19 HIGH 7.3 CVE-2020-7565 A CWE-326: Inadequate Encryption Strength vulnerability exists in Modicon M221 (all references, all versions) that could allow the attacker to break … Modicon M221 Firmware Mitigation only Fix from $1,9502020-11-19 HIGH 8.8 CVE-2020-7563 A CWE-787: Out-of-bounds Write vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Co… Modicon Tsxety4103 Firmware Mitigation only Fix from $1,9502020-11-18 HIGH 8.8 CVE-2020-7564 A CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability exists in the Web Server on Modicon M340, Modicon Qua… Modicon Tsxety4103 Firmware Mitigation only Fix from $1,9502020-11-18 HIGH 8.1 CVE-2020-7562 A CWE-125: Out-of-Bounds Read vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Com… Modicon Tsxety4103 Firmware Mitigation only Fix from $1,9502020-11-18 CRITICAL 9.8 CVE-2020-7498 A CWE-798: Use of Hard-coded Credentials vulnerability exists in the Unity Loader and OS Loader Software (all versions). The fixed credentials are us… Os Loader Mitigation only Fix from $2,3002020-06-16 CRITICAL 9.8 CVE-2020-7487 A CWE-345: Insufficient Verification of Data Authenticity vulnerability exists which could allow the attacker to execute malicious code on the Modico… Ecostruxure Machine Expert Mitigation only Fix from $2,3002020-04-22 HIGH 7.5 CVE-2019-6859 A CWE-798: Use of Hardcoded Credentials vulnerability exists in Modicon Controllers (All versions of the following CPUs and Communication Module prod… Bmx P34x Firmware Mitigation only Fix from $1,9502020-04-22 HIGH 7.5 CVE-2020-7488 A CWE-319: Cleartext Transmission of Sensitive Information vulnerability exists which could leak sensitive information transmitted between the softwa… Ecostruxure Machine Expert Mitigation only Fix from $1,9502020-04-22 HIGH 7.5 CVE-2020-7486 **VERSION NOT SUPPORTED WHEN ASSIGNED** A vulnerability could cause TCM modules to reset when under high network load in TCM v10.4.x and in system v1… Tricon Tcm 4351 Firmware Mitigation only Fix from $1,9502020-04-16 CRITICAL 9.8 CVE-2020-7480 A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exists in Andover Continuum (All versions), which could cause files… Andover Continuum 9680 Firmware Mitigation only Fix from $2,3002020-03-23