Vulnerability index

Browse CVEs

17 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Secure Integration Server HIGH 8.8
CVE-2023-39478

Softing Secure Integration Server Exposure of Resource to Wrong Sphere Remote Code Execution Vulnerability. This vulnerability allows remote attacker…

Mitigation only
Fix from $1,950 2024-05-03
Secure Integration Server HIGH 8.8
CVE-2023-39479

Softing Secure Integration Server OPC UA Gateway Directory Creation Vulnerability. This vulnerability allows remote attackers to create directories o…

Mitigation only
Fix from $1,950 2024-05-03
Secure Integration Server MEDIUM 6.5
CVE-2023-39480

Softing Secure Integration Server FileDirectory OPC UA Object Arbitrary File Creation Vulnerability. This vulnerability allows remote attackers to cr…

Mitigation only
Fix from $1,600 2024-05-03
Edgeaggregator HIGH 7.5
CVE-2024-0860

The affected product is vulnerable to a cleartext transmission of sensitive information vulnerability, which may allow an attacker to capture packets…

Mitigation only
Fix from $1,950 2024-03-14
Edgeaggregator HIGH 7.2
CVE-2023-38126EPSS 71%

Softing edgeAggregator Restore Configuration Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to e…

Mitigation only
Fix from $1,950 2023-12-19
Edgeaggregator CRITICAL 9.8
CVE-2022-2336

Softing Secure Integration Server, edgeConnector, and edgeAggregator software ships with the default administrator credentials as `admin` and passwor…

Mitigation only
Fix from $2,300 2022-08-17
Edgeaggregator HIGH 7.5
CVE-2022-2335

A crafted HTTP packet with a -1 content-length header can create a denial-of-service condition in Softing Secure Integration Server V1.22.

Mitigation only
Fix from $1,950 2022-08-17
Edgeaggregator HIGH 7.5
CVE-2022-2337

A crafted HTTP packet with a missing HTTP URI can create a denial-of-service condition in Softing Secure Integration Server V1.22.

Mitigation only
Fix from $1,950 2022-08-17
Edgeaggregator HIGH 7.5
CVE-2022-2547

A crafted HTTP packet without a content-type header can create a denial-of-service condition in Softing Secure Integration Server V1.22.

Mitigation only
Fix from $1,950 2022-08-17
Edgeaggregator MEDIUM 5.3
CVE-2022-2338

Softing Secure Integration Server V1.22 is vulnerable to authentication bypass via a machine-in-the-middle attack. The default the administration int…

Mitigation only
Fix from $1,600 2022-08-17
Edgeaggregator HIGH 7.5
CVE-2022-1069

A crafted HTTP packet with a large content-length header can create a denial-of-service condition in Softing Secure Integration Server V1.22.

Mitigation only
Fix from $1,950 2022-08-17
Edgeaggregator HIGH 7.5
CVE-2022-1748

Softing OPC UA C++ Server SDK, Secure Integration Server, edgeConnector, edgeAggregator, OPC Suite, and uaGate are affected by a NULL pointer derefer…

No fix yet
Fix from $1,950 2022-08-17
Edgeaggregator HIGH 7.2
CVE-2022-1373EPSS 13%

The “restore configuration” feature of Softing Secure Integration Server V1.22 is vulnerable to a directory traversal vulnerability when processing z…

Mitigation only
Fix from $1,950 2022-08-17
Edgeaggregator HIGH 7.2
CVE-2022-2334EPSS 12%

The application searches for a library dll that is not found. If an attacker can place a dll with this name, then the attacker can leverage it to exe…

Mitigation only
Fix from $1,950 2022-08-17
Uagate Si Firmware HIGH 8.8
CVE-2019-11527

An issue was discovered in Softing uaGate SI 1.60.01. A CGI script is vulnerable to command injection with a maliciously crafted url parameter.

No fix yet
Fix from $1,950 2019-10-10
Uagate Si Firmware HIGH 7.5
CVE-2019-11528

An issue was discovered in Softing uaGate SI 1.60.01. A system default path for executables is user writable.

No fix yet
Fix from $1,950 2019-10-10
Uagate Si Firmware CRITICAL 9.8
CVE-2019-11526

An issue was discovered in Softing uaGate SI 1.60.01. A maintenance script, that is executable via sudo, is vulnerable to file path injection. This e…

No fix yet
Fix from $2,300 2019-10-10