Vulnerability index

Browse CVEs

27 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Foxman Un MEDIUM 6.5
CVE-2024-28022

A vulnerability exists in the UNEM server / APIGateway that if exploited allows a malicious user to perform an arbitrary number of authentication att…

Mitigation only
Fix from $1,600 2024-06-11
Foxman Un HIGH 8.0
CVE-2024-28020

A user/password reuse vulnerability exists in the FOXMAN-UN/UNEM application and server management. If exploited a malicious high-privileged user cou…

No fix yet
Fix from $1,950 2024-06-11
Foxman Un CRITICAL 10.0
CVE-2024-2013

An authentication bypass vulnerability exists in the FOXMAN-UN/UNEM server / API Gateway component that if exploited allows attackers without any ac…

Mitigation only
Fix from $2,300 2024-06-11
Foxman Un CRITICAL 9.8
CVE-2024-2011

A heap-based buffer overflow vulnerability exists in the FOXMAN-UN/UNEM that if exploited will generally lead to a denial of service but can be used …

No fix yet
Fix from $2,300 2024-06-11
Foxman Un CRITICAL 9.8
CVE-2024-2012

vulnerability exists in the FOXMAN-UN/UNEM server / API Gateway that if exploited an attacker could use to allow unintended commands or code to be e…

Mitigation only
Fix from $2,300 2024-06-11
Foxman Un HIGH 7.4
CVE-2024-28021

A vulnerability exists in the FOXMAN-UN/UNEM server that affects the message queueing mechanism’s certificate validation. If exploited an attacker c…

Mitigation only
Fix from $1,950 2024-06-11
Rtu500 Scripting Interface HIGH 7.5
CVE-2023-1514

A vulnerability exists in the component RTU500 Scripting interface. When a client connects to a server using TLS, the server presents a certificate. …

Mitigation only
Fix from $1,950 2023-12-19
Rtu500 Firmware HIGH 7.5
CVE-2022-4608

A vulnerability exists in HCI IEC 60870-5-104 function included in certain versions of the RTU500 series product. The vulnerability can only be explo…

Mitigation only
Fix from $1,950 2023-07-26
Rtu500 Firmware HIGH 7.5
CVE-2022-2502

A vulnerability exists in the HCI IEC 60870-5-104 function included in certain versions of the RTU500 series product. The vulnerability can only be e…

Mitigation only
Fix from $1,950 2023-07-26
Foxman Un CRITICAL 9.8
CVE-2022-3927

The affected products store both public and private key that are used to sign and protect Custom Parameter Set (CPS) file from modification. An attac…

Mitigation only
Fix from $2,300 2023-01-05
Foxman Un CRITICAL 9.8
CVE-2022-3929

Communication between the client and the server application of the affected products is partially done using CORBA (Common Object Request Broker Arch…

Mitigation only
Fix from $2,300 2023-01-05
Foxman Un MEDIUM 5.5
CVE-2022-3928

Hardcoded credential is found in affected products' message queue. An attacker that manages to exploit this vulnerability will be able to access data…

Mitigation only
Fix from $1,600 2023-01-05
Foxman Un CRITICAL 9.8
CVE-2021-40342

In the DES implementation, the affected product versions use a default key for encryption. Successful exploitation allows an attacker to obtain sensi…

Mitigation only
Fix from $2,300 2023-01-05
Foxman Un MEDIUM 5.5
CVE-2021-40341

DES cipher, which has inadequate encryption strength, is used Hitachi Energy FOXMAN-UN to encrypt user credentials used to access the Network Element…

Mitigation only
Fix from $1,600 2023-01-05
Microscada Pro Sys600 HIGH 7.8
CVE-2022-3388

An input validation vulnerability exists in the Monitor Pro interface of MicroSCADA Pro and MicroSCADA X SYS600. An authenticated user can launch an …

Mitigation only
Fix from $1,950 2022-11-21
Txpert Hub Coretec 4 Firmware MEDIUM 6.7
CVE-2021-35530

A vulnerability in the application authentication and authorization mechanism in Hitachi Energy's TXpert Hub CoreTec 4, that depends on a token valid…

Mitigation only
Fix from $1,600 2022-06-07
Txpert Hub Coretec 4 Firmware MEDIUM 6.7
CVE-2021-35531

Improper Input Validation vulnerability in a particular configuration setting field of Hitachi Energy TXpert Hub CoreTec 4 product, allows an attacke…

Mitigation only
Fix from $1,600 2022-06-07
Txpert Hub Coretec 4 Firmware MEDIUM 6.7
CVE-2021-35532

A vulnerability exists in the file upload validation part of Hitachi Energy TXpert Hub CoreTec 4 product. The vulnerability allows an attacker or mal…

Mitigation only
Fix from $1,600 2022-06-07
Fox615 Firmware HIGH 7.5
CVE-2021-40334

Missing Handler vulnerability in the proprietary management protocol (port TCP 5558) of Hitachi Energy FOX61x, XCM20 allows an attacker that exploits…

Mitigation only
Fix from $1,950 2021-12-02
Fox615 Firmware HIGH 7.1
CVE-2021-40333

Weak Password Requirements vulnerability in Hitachi Energy FOX61x, XCM20 allows an attacker to gain unauthorized access to the Data Communication Net…

Mitigation only
Fix from $1,950 2021-12-02
Rtu500 Firmware HIGH 7.5
CVE-2021-35533

Improper Input Validation vulnerability in the APDU parser in the Bidirectional Communication Interface (BCI) IEC 60870-5-104 function of Hitachi Ene…

Mitigation only
Fix from $1,950 2021-11-26
Gms600 Firmware HIGH 7.2
CVE-2021-35534

Insufficient security control vulnerability in internal database access mechanism of Hitachi Energy Relion 670/650/SAM600-IO, Relion 650, GMS600, PWC…

Mitigation only
Fix from $1,950 2021-11-18
Microscada Pro Sys600 CRITICAL 9.8
CVE-2019-5620EPSS 70%

ABB MicroSCADA Pro SYS600 version 9.3 suffers from an instance of CWE-306: Missing Authentication for Critical Function.

No fix yet
Fix from $2,300 2020-04-29
Esoms CRITICAL 9.8
CVE-2018-14805

ABB eSOMS version 6.0.2 may allow unauthorized access to the system when LDAP is set to allow anonymous authentication, and specific key values withi…

Mitigation only
Fix from $2,300 2018-08-29
Sys600 Firmware HIGH 7.8
CVE-2018-1168

This vulnerability allows local attackers to escalate privileges on vulnerable installations of ABB MicroSCADA 9.3 with FP 1-2-3. An attacker must fi…

Mitigation only
Fix from $1,950 2018-02-21
Fox515t Firmware MEDIUM 5.5
CVE-2017-14025

An Improper Input Validation issue was discovered in ABB FOX515T release 1.0. An improper input validation vulnerability has been identified, allowin…

Mitigation only
Fix from $1,600 2017-11-06
Fox515t Firmware MEDIUM 6.5
CVE-2017-15583

The embedded web server on ABB Fox515T 1.0 devices is vulnerable to Local File Inclusion. It accepts a parameter that specifies a file for display or…

Mitigation only
Fix from $1,600 2017-10-18