Vulnerability index

Browse CVEs

689 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Ecostruxure Control Expert MEDIUM 5.5
CVE-2021-22781

Insufficiently Protected Credentials vulnerability exists in EcoStruxure Control Expert (all versions prior to V15.0 SP1, including all versions of U…

Fix: 15.0+
Fix from $1,600 2021-07-14
Ecostruxure Control Expert MEDIUM 5.5
CVE-2021-22782

Missing Encryption of Sensitive Data vulnerability exists in EcoStruxure Control Expert (all versions prior to V15.0 SP1, including all versions of U…

Fix: 15.0+
Fix from $1,600 2021-07-14
Powerlogic Pm5560 Firmware CRITICAL 9.8
CVE-2021-22763

A CWE-640: Weak Password Recovery Mechanism for Forgotten Password vulnerability exists in PowerLogic PM55xx, PowerLogic PM8ECC, PowerLogic EGX100 an…

Fix: 2.7.8 / 10.7.3+
Fix from $2,300 2021-06-11
Powerlogic Egx100 Firmware CRITICAL 9.8
CVE-2021-22765

A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic EGX300 (All Versions) that co…

Mitigation only
Fix from $2,300 2021-06-11
Powerlogic Egx100 Firmware CRITICAL 9.8
CVE-2021-22767

A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic EGX300 (All Versions) that co…

Mitigation only
Fix from $2,300 2021-06-11
Powerlogic Egx100 Firmware CRITICAL 9.8
CVE-2021-22768

A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic EGX300 (All Versions) that co…

Mitigation only
Fix from $2,300 2021-06-11
Interactive Graphical Scada System HIGH 7.8
CVE-2021-22758

A CWE-824: Access of uninitialized pointer vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could result in loss of data…

Fix: after 15.0.0.21140
Fix from $1,950 2021-06-11
Interactive Graphical Scada System HIGH 7.8
CVE-2021-22759

A CWE-416: Use after free vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could result in loss of data or remote code e…

Fix: after 15.0.0.21140
Fix from $1,950 2021-06-11
Interactive Graphical Scada System HIGH 7.8
CVE-2021-22760

A CWE-763: Release of invalid pointer or reference vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could result in loss…

Fix: after 15.0.0.21140
Fix from $1,950 2021-06-11
Interactive Graphical Scada System HIGH 7.8
CVE-2021-22761

A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and…

Fix: after 15.0.0.21140
Fix from $1,950 2021-06-11
Interactive Graphical Scada System HIGH 7.8
CVE-2021-22762

A CWE-22: Improper Limitation of a Pathname to a Restricted Directory vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that c…

Fix: after 15.0.0.21140
Fix from $1,950 2021-06-11
Powerlogic Egx100 Firmware HIGH 7.5
CVE-2021-22766

A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic EGX300 (All Versions) that co…

Mitigation only
Fix from $1,950 2021-06-11
Powerlogic Pm5560 Firmware MEDIUM 5.3
CVE-2021-22764

A CWE-287: Improper Authentication vulnerability exists in PowerLogic PM55xx, PowerLogic PM8ECC, PowerLogic EGX100 and PowerLogic EGX300 (see securit…

Fix: 2.7.8 / 10.7.3+
Fix from $1,600 2021-06-11
Interactive Graphical Scada System HIGH 7.8
CVE-2021-22750

A CWE-787: Out-of-bounds write vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21041 and prior that could result in loss of data or remote c…

Fix: after 15.0.0.21041
Fix from $1,950 2021-06-11
Interactive Graphical Scada System HIGH 7.8
CVE-2021-22751

A CWE-787: Out-of-bounds write vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could result in disclosure of informatio…

Fix: after 15.0.0.21140
Fix from $1,950 2021-06-11
Interactive Graphical Scada System HIGH 7.8
CVE-2021-22752

A CWE-787: Out-of-bounds write vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could result in loss of data or remote c…

Fix: after 15.0.0.21140
Fix from $1,950 2021-06-11
Interactive Graphical Scada System HIGH 7.8
CVE-2021-22753

A CWE-125: Out-of-bounds read vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could result in loss of data or remote co…

Fix: after 15.0.0.21140
Fix from $1,950 2021-06-11
Interactive Graphical Scada System HIGH 7.8
CVE-2021-22754

A CWE-787: Out-of-bounds write vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could result in loss of data or remote c…

Fix: after 15.0.0.21140
Fix from $1,950 2021-06-11
Interactive Graphical Scada System HIGH 7.8
CVE-2021-22755

A CWE-787: Out-of-bounds write vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could result in disclosure of informatio…

Fix: after 15.0.0.21140
Fix from $1,950 2021-06-11
Interactive Graphical Scada System HIGH 7.8
CVE-2021-22756

A CWE-125: Out-of-bounds read vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could result in disclosure of information…

Fix: after 15.0.0.21140
Fix from $1,950 2021-06-11
Interactive Graphical Scada System HIGH 7.8
CVE-2021-22757

A CWE-125: Out-of-bounds read vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could result in disclosure of information…

Fix: after 15.0.0.21140
Fix from $1,950 2021-06-11
Modicon X80 Bmxnor0200h Rtu Firmware MEDIUM 5.3
CVE-2021-22749

A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists in Modicon X80 BMXNOR0200H RTU SV1.70 IR22 and prior that …

Mitigation only
Fix from $1,600 2021-06-11
Spacelynk Firmware CRITICAL 9.8
CVE-2021-22737

Insufficiently Protected Credentials vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior that could cause unauthorized acc…

Fix: after 2.6.0
Fix from $2,300 2021-05-26
Spacelynk Firmware CRITICAL 9.8
CVE-2021-22738

Use of a Broken or Risky Cryptographic Algorithm vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior that could cause unau…

Fix: after 2.6.0
Fix from $2,300 2021-05-26
Spacelynk Firmware HIGH 7.5
CVE-2021-22736

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2.60 a…

Fix: after 2.6.0
Fix from $1,950 2021-05-26
Spacelynk Firmware HIGH 7.2
CVE-2021-22734

Improper Verification of Cryptographic Signature vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior which could cause rem…

Fix: after 2.6.0
Fix from $1,950 2021-05-26
Spacelynk Firmware HIGH 7.2
CVE-2021-22735

Improper Verification of Cryptographic Signature vulnerability exists inhomeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior which could allow remo…

Fix: after 2.6.0
Fix from $1,950 2021-05-26
Clearscada MEDIUM 6.7
CVE-2021-22741

Use of Password Hash with Insufficient Computational Effort vulnerability exists in ClearSCADA (all versions), EcoStruxure Geo SCADA Expert 2019 (all…

Fix: after 83.7742.1
Fix from $1,600 2021-05-26
Spacelynk Firmware MEDIUM 6.5
CVE-2021-22740

Information Exposure vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior which could cause information to be exposed when …

Fix: after 2.6.0
Fix from $1,600 2021-05-26
Spacelynk Firmware MEDIUM 5.9
CVE-2021-22739

Information Exposure vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior which could cause a device to be compromised when…

Fix: after 2.6.0
Fix from $1,600 2021-05-26