Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
CRITICAL 9.8
CVE-2017-7574
Schneider Electric SoMachine Basic 1.4 SP1 and Schneider Electric Modicon TM221CE16R 1.3.3.3 devices have a hardcoded-key vulnerability. The Project …
Modicon Tm221ce16r Firmware
Mitigation only
CRITICAL 9.8
CVE-2017-7575
Schneider Electric Modicon TM221CE16R 1.3.3.3 devices allow remote attackers to discover the application-protection password via a \x00\x01\x00\x00\x…
Modicon Tm221ce16r Firmware
No fix yet
CRITICAL 9.8
CVE-2017-5178EPSS 14%
An issue was discovered in Schneider Electric Tableau Server/Desktop Versions 7.0 to 10.1.3 in Wonderware Intelligence Versions 2014R3 and prior. The…
Tableau Desktop
after 2014
HIGH 7.3
CVE-2017-5155
An issue was discovered in Schneider Electric Wonderware Historian 2014 R2 SP1 P01 and earlier. Wonderware Historian creates logins with default pass…
Wonderware Historian
Mitigation only
HIGH 7.5
CVE-2016-8374
An issue was discovered in Schneider Electric Magelis HMI Magelis GTO Advanced Optimum Panels, all versions, Magelis GTU Universal Panel, all version…
Magelis Gtu Universal Panel Firmware
Mitigation only
MEDIUM 5.3
CVE-2016-8367
An issue was discovered in Schneider Electric Magelis HMI Magelis GTO Advanced Optimum Panels, all versions, Magelis GTU Universal Panel, all version…
Magelis Gtu Universal Panel Firmware
Mitigation only
CRITICAL 10.0
CVE-2016-8352
An issue was discovered in Schneider Electric ConneXium firewalls TCSEFEC23F3F20 all versions, TCSEFEC23F3F21 all versions, TCSEFEC23FCF20 all versio…
Connexium Firmware
Mitigation only
CRITICAL 9.8
CVE-2016-5815
An issue was discovered on Schneider Electric IONXXXX series power meters ION73XX series, ION75XX series, ION76XX series, ION8650 series, ION8800 ser…
Ion5000
Mitigation only
CRITICAL 9.8
CVE-2016-5818
An issue was discovered in Schneider Electric PowerLogic PM8ECC device 2.651 and older. Undocumented hard-coded credentials allow access to the devic…
Powerlogic Pm8ecc Firmware
Patch available
HIGH 8.8
CVE-2016-5809
An issue was discovered on Schneider Electric IONXXXX series power meters ION73XX series, ION75XX series, ION76XX series, ION8650 series, ION8800 ser…
Ion5000
No fix yet
HIGH 7.0
CVE-2016-8354
An issue was discovered in Schneider Electric Unity PRO prior to V11.1. Unity projects can be compiled as x86 instructions and loaded onto the PLC Si…
Unity Pro
after 11.0
HIGH 7.3
CVE-2016-4529
An unspecified ActiveX control in Schneider Electric SoMachine HVAC Programming Software for M171/M172 Controllers before 2.1.0 allows remote attacke…
Somachine Hvac Firmware
after 2.0.2
CRITICAL 9.8
CVE-2016-4520EPSS 6%
Schneider Electric Pelco Digital Sentry Video Management System with firmware before 7.14 has hardcoded credentials, which allows remote attackers to…
Pelco Digital Sentry Video Management System Firmware
after 7.6.32.9203
MEDIUM 6.1
CVE-2016-4513
Cross-site scripting (XSS) vulnerability in the Schneider Electric PowerLogic PM8ECC module before 2.651 for PowerMeter 800 devices allows remote att…
Powerlogic Pm8ecc Firmware
after 2.60
MEDIUM 6.5
CVE-2016-2292
Stack-based buffer overflow in Pro-face GP-Pro EX EX-ED before 4.05.000, PFXEXEDV before 4.05.000, PFXEXEDLS before 4.05.000, and PFXEXGRPLS before 4…
Proface Gp Pro Ex Ex Ed
after 4.0.4
MEDIUM 6.5
CVE-2016-2291
Pro-face GP-Pro EX EX-ED before 4.05.000, PFXEXEDV before 4.05.000, PFXEXEDLS before 4.05.000, and PFXEXGRPLS before 4.05.000 allow remote attackers …
Proface Gp Pro Ex Ex Ed
after 4.0.4
HIGH 8.8
CVE-2016-2290
Heap-based buffer overflow in Pro-face GP-Pro EX EX-ED before 4.05.000, PFXEXEDV before 4.05.000, PFXEXEDLS before 4.05.000, and PFXEXGRPLS before 4.…
Proface Gp Pro Ex Ex Ed
after 4.0.4
CRITICAL 9.1
CVE-2015-7921
The FTP server in Pro-face GP-Pro EX EX-ED before 4.05.000, PFXEXEDV before 4.05.000, PFXEXEDLS before 4.05.000, and PFXEXGRPLS before 4.05.000 has h…
Proface Gp Pro Ex Ex Ed
after 4.0.4
MEDIUM 5.3
CVE-2015-6485
Schneider Electric Telvent Sage 2300 RTUs with firmware before C3413-500-S01, and LANDAC II-2, Sage 1410, Sage 1430, Sage 1450, Sage 2400, and Sage 3…
Telvent Rtu Firmware
Mitigation only
HIGH 7.2
CVE-2016-2278EPSS 13%
Schneider Electric Struxureware Building Operations Automation Server AS 1.7 and earlier and AS-P 1.7 and earlier allows remote authenticated adminis…
Struxureware Building Operations Automation Server As Firmware
after 1.7
HIGH 10.0
CVE-2015-7937EPSS 7%
Stack-based buffer overflow in the GoAhead Web Server on Schneider Electric Modicon M340 PLC BMXNOx and BMXPx devices allows remote attackers to exec…
Bmxnoc0401
Mitigation only
MEDIUM 6.8
CVE-2015-8561
The F1BookView ActiveX control in F1 Bookview in Schneider Electric ProClima before 6.2 allows remote attackers to execute arbitrary code or cause a …
Proclima
after 6.1
MEDIUM 6.8
CVE-2015-7918EPSS 6%
Multiple buffer overflows in the F1BookView ActiveX control in F1 Bookview in Schneider Electric ProClima before 6.2 allow remote attackers to execut…
Proclima
after 6.1
HIGH 7.7
CVE-2015-3977
Buffer overflow in Schneider Electric IMT25 Magnetic Flow DTM before 1.500.004 for the HART Protocol allows remote authenticated users to execute arb…
Imt25 Magnetic Flow Dtm
after 1.500.000
MEDIUM 5.0
CVE-2015-3962
Schneider Electric StruxureWare Building Expert MPM before 2.15 does not use encryption for the client-server data stream, which allows remote attack…
Struxureware Building Expert Multi Purpose Management
2.15+
MEDIUM 6.9
CVE-2015-3940
Untrusted search path vulnerability in Schneider Electric Wonderware System Platform before 2014 R2 Patch 01 allows local users to gain privileges vi…
Wonderware System Platform 2014
Patch available
HIGH 7.5
CVE-2015-0982
Buffer overflow in an unspecified DLL in Schneider Electric Pelco DS-NVs before 7.8.90 allows remote attackers to execute arbitrary code via unspecif…
Pelco Ds Nv
7.8.90+
MEDIUM 6.9
CVE-2014-9206
Stack-based buffer overflow in Device Type Manager (DTM) 3.1.6 and earlier for Schneider Electric Invensys SRD Control Valve Positioner devices 960 a…
Device Type Manager
after 3.1.6
HIGH 7.5
CVE-2014-9200EPSS 6%
Stack-based buffer overflow in an unspecified DLL file in a DTM development kit in Schneider Electric Unity Pro, SoMachine, SoMove, SoMove Lite, Modb…
Somachine
Mitigation only
HIGH 10.0
CVE-2014-9198
The FTP server on the Schneider Electric ETG3000 FactoryCast HMI Gateway with firmware through 1.60 IR 04 has hardcoded credentials, which makes it e…
Etg3000 Factorycast Hmi Gateway Firmware
after 1.60.4