Vulnerability index

Browse CVEs

689 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2018-7789 An Improper Check for Unusual or Exceptional Conditions vulnerability exists in Schneider Electric's Modicon M221 product (all references, all versio… Modicon M221 Firmware 1.6.2.0+ Fix from $1,9502018-08-29 MEDIUM 5.4 CVE-2018-7795 A Cross Protocol Injection vulnerability exists in Schneider Electric's PowerLogic (PM5560 prior to FW version 2.5.4) product. The vulnerability make… Powerlogic Pm5560 Firmware 2.5.4+ Fix from $1,6002018-08-29 CRITICAL 9.8 CVE-2018-7778 In Schneider Electric Evlink Charging Station versions prior to v3.2.0-12_v1, the Web Interface has an issue that may allow a remote attacker to gain… Evlink Charging Station Firmware 3.2.0-12_v1+ Fix from $2,3002018-07-03 CRITICAL 9.8 CVE-2018-7780 In Schneider Electric Pelco Sarix Professional 1st generation cameras with firmware versions prior to 3.29.69, a buffer overflow vulnerability exist … Imps110 1 Firmware 3.29.69+ Fix from $2,3002018-07-03 CRITICAL 9.8 CVE-2018-7784 In Schneider Electric U.motion Builder software versions prior to v1.3.4, this exploit occurs when the submitted data of an input string is evaluated… U.motion 1.3.4+ Fix from $2,3002018-07-03 CRITICAL 9.8 CVE-2018-7785 In Schneider Electric U.motion Builder software versions prior to v1.3.4, a remote command injection allows authentication bypass. U.motion Builder 1.3.4+ Fix from $2,3002018-07-03 HIGH 8.8 CVE-2018-7774 The vulnerability exists within processing of localize.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. The underlying S… U.motion Builder 1.3.4+ Fix from $1,9502018-07-03 HIGH 8.8 CVE-2018-7777EPSS 32% The vulnerability is due to insufficient handling of update_file request parameter on update_module.php in Schneider Electric U.motion Builder softwa… U.motion Builder 1.3.4+ Fix from $1,9502018-07-03 HIGH 8.8 CVE-2018-7781 In Schneider Electric Pelco Sarix Professional 1st generation cameras with firmware versions prior to 3.29.69, by sending a specially crafted request… Imps110 1 Firmware 3.29.69+ Fix from $1,9502018-07-03 HIGH 8.8 CVE-2018-7782 In Schneider Electric Pelco Sarix Professional 1st generation cameras with firmware versions prior to 3.29.69, authenticated users can view passwords… Imps110 1 Firmware 3.29.69+ Fix from $1,9502018-07-03 HIGH 7.5 CVE-2018-7779 In Schneider Electric Wiser for KNX V2.1.0 and prior, homeLYnk V2.0.1 and prior; and spaceLYnk V2.1.0 and prior, weak and unprotected FTP access coul… Homelynk Firmware after 2.1.0 Fix from $1,9502018-07-03 HIGH 7.5 CVE-2018-7783 Schneider Electric SoMachine Basic prior to v1.6 SP1 suffers from an XML External Entity (XXE) vulnerability using the DTD parameter entities techniq… Somachine Basic after 1.6 Fix from $1,9502018-07-03 MEDIUM 6.1 CVE-2018-7786 In Schneider Electric U.motion Builder software versions prior to v1.3.4, a cross site scripting (XSS) vulnerability exists which could allow injecti… U.motion Builder 1.3.4+ Fix from $1,6002018-07-03 MEDIUM 5.3 CVE-2018-7787 In Schneider Electric U.motion Builder software versions prior to v1.3.4, this vulnerability is due to improper validation of input of context parame… U.motion Builder 1.3.4+ Fix from $1,6002018-07-03 HIGH 8.8 CVE-2018-7765 The vulnerability exists within processing of track_import_export.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. The u… U.motion Builder 1.3.4+ Fix from $1,9502018-07-03 HIGH 8.8 CVE-2018-7766 The vulnerability exists within processing of track_getdata.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. The underly… U.motion Builder 1.3.4+ Fix from $1,9502018-07-03 HIGH 8.8 CVE-2018-7767 The vulnerability exists within processing of editobject.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. The underlying… U.motion Builder 1.3.4+ Fix from $1,9502018-07-03 HIGH 8.8 CVE-2018-7768 The vulnerability exists within processing of loadtemplate.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. The underlyi… U.motion Builder 1.3.4+ Fix from $1,9502018-07-03 HIGH 8.8 CVE-2018-7769 The vulnerability exists within processing of xmlserver.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. The underlying … U.motion Builder 1.3.4+ Fix from $1,9502018-07-03 HIGH 8.8 CVE-2018-7772 The vulnerability exists within processing of applets which are exposed on the web service in Schneider Electric U.motion Builder software versions p… U.motion Builder 1.3.4+ Fix from $1,9502018-07-03 HIGH 8.8 CVE-2018-7773 The vulnerability exists within processing of nfcserver.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. The underlying … U.motion Builder 1.3.4+ Fix from $1,9502018-07-03 HIGH 8.0 CVE-2018-7771 The vulnerability exists within processing of editscript.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. A directory tr… U.motion Builder 1.3.4+ Fix from $1,9502018-07-03 MEDIUM 6.5 CVE-2018-7770 The vulnerability exists within processing of sendmail.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. The applet allow… U.motion 1.3.4+ Fix from $1,6002018-07-03 HIGH 8.1 CVE-2018-8872 In Schneider Electric Triconex Tricon MP model 3008 firmware versions 10.0-10.4, system calls read directly from memory addresses within the control … Triconex Tricon Mp 3008 Firmware after 10.4 Fix from $1,9502018-05-04 MEDIUM 6.7 CVE-2018-7522 In Schneider Electric Triconex Tricon MP model 3008 firmware versions 10.0-10.4, when a system call is made, registers are stored to a fixed memory l… Triconex Tricon Mp 3008 Firmware after 10.0-10.4 Fix from $1,6002018-05-04 CRITICAL 9.8 CVE-2018-7241 Hard coded accounts exist in Schneider Electric's Modicon Premium, Modicon Quantum, Modicon M340, and BMXNOR0200 controllers in all versions of the c… Bmxnor0200 Firmware Mitigation only Fix from $2,3002018-04-18 CRITICAL 9.8 CVE-2018-7242 Vulnerable hash algorithms exists in Schneider Electric's Modicon Premium, Modicon Quantum, Modicon M340, and BMXNOR0200 controllers in all versions … Bmxnor0200 Firmware Mitigation only Fix from $2,3002018-04-18 CRITICAL 9.8 CVE-2018-7243 An authorization bypass vulnerability exists In Schneider Electric's 66074 MGE Network Management Card Transverse installed in MGE UPS and MGE STS. T… 66074 Mge Network Management Card Transverse Mitigation only Fix from $2,3002018-04-18 CRITICAL 9.8 CVE-2018-7246 A cleartext transmission of sensitive information vulnerability exists in Schneider Electric's 66074 MGE Network Management Card Transverse installed… 66074 Mge Network Management Card Transverse Mitigation only Fix from $2,3002018-04-18 CRITICAL 9.8 CVE-2018-7760 An authorization bypass vulnerability exists in Schneider Electric's Modicon M340, Modicon Premium, Modicon Quantum PLC, BMXNOR0200. Requests to CGI … Bmxnor0200 Firmware Mitigation only Fix from $2,3002018-04-18