Vulnerability index

Browse CVEs

23 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Integraxor MEDIUM 5.3
CVE-2017-16733

A SQL Injection issue was discovered in Ecava IntegraXor v 6.1.1030.1 and prior. The SQL Injection vulnerability has been identified, which an attack…

Fix: after 6.1.1030.1
Fix from $1,600 2017-12-20
Integraxor MEDIUM 5.3
CVE-2017-16735

A SQL Injection issue was discovered in Ecava IntegraXor v 6.1.1030.1 and prior. The SQL Injection vulnerability has been identified, which generates…

Fix: after 6.1.1030.1
Fix from $1,600 2017-12-20
Integraxor CRITICAL 9.8
CVE-2017-6050

A SQL Injection issue was discovered in Ecava IntegraXor Versions 5.2.1231.0 and prior. The application fails to properly validate user input, which …

Fix: after 5.2.1231.0
Fix from $2,300 2017-06-21
Integraxor CRITICAL 9.8
CVE-2016-8341

An issue was discovered in Ecava IntegraXor Version 5.0.413.0. The Ecava IntegraXor web server has parameters that are vulnerable to SQL injection. I…

Mitigation only
Fix from $2,300 2017-02-13
Integraxor HIGH 7.5
CVE-2016-2306

The HMI web server in Ecava IntegraXor before 5.0 build 4522 allows remote attackers to obtain sensitive cleartext information by sniffing the networ…

Fix: after 4.2.4502
Fix from $1,950 2016-04-22
Integraxor MEDIUM 6.1
CVE-2016-2305

Cross-site scripting (XSS) vulnerability in Ecava IntegraXor before 5.0 build 4522 allows remote attackers to inject arbitrary web script or HTML via…

Fix: after 4.2.4502
Fix from $1,600 2016-04-22
Integraxor MEDIUM 5.3
CVE-2016-2303

CRLF injection vulnerability in Ecava IntegraXor before 5.0 build 4522 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP resp…

Fix: after 4.2.4502
Fix from $1,600 2016-04-22
Integraxor MEDIUM 5.3
CVE-2016-2302

Ecava IntegraXor before 5.0 build 4522 allows remote attackers to obtain sensitive information by reading detailed error messages.

Fix: after 4.2.4502
Fix from $1,600 2016-04-22
Integraxor MEDIUM 6.3
CVE-2016-2301

SQL injection vulnerability in Ecava IntegraXor before 5.0 build 4522 allows remote authenticated users to execute arbitrary SQL commands via unspeci…

Fix: after 4.2.4502
Fix from $1,600 2016-04-22
Integraxor MEDIUM 6.5
CVE-2016-2300

Ecava IntegraXor before 5.0 build 4522 allows remote attackers to bypass authentication and access unspecified web pages via unknown vectors.

Fix: after 4.2.4502
Fix from $1,600 2016-04-22
Integraxor HIGH 7.3
CVE-2016-2299

SQL injection vulnerability in Ecava IntegraXor before 5.0 build 4522 allows remote attackers to execute arbitrary SQL commands via unspecified vecto…

Fix: after 4.2.4502
Fix from $1,950 2016-04-22
Integraxor HIGH 9.0
CVE-2014-2375

Ecava IntegraXor SCADA Server Stable 4.1.4360 and earlier and Beta 4.1.4392 and earlier allows remote attackers to read or write to arbitrary files, …

Fix: after 4.1.4392
Fix from $1,950 2014-09-15
Integraxor HIGH 7.5
CVE-2014-2376

SQL injection vulnerability in Ecava IntegraXor SCADA Server Stable 4.1.4360 and earlier and Beta 4.1.4392 and earlier allows remote attackers to exe…

Fix: after 4.1.4392
Fix from $1,950 2014-09-15
Integraxor MEDIUM 5.0
CVE-2014-2377

Ecava IntegraXor SCADA Server Stable 4.1.4360 and earlier and Beta 4.1.4392 and earlier allows remote attackers to discover full pathnames via an app…

Fix: after 4.1.4392
Fix from $1,600 2014-09-15
Integraxor MEDIUM 5.0
CVE-2014-0786

Ecava IntegraXor before 4.1.4393 allows remote attackers to read cleartext credentials for administrative accounts via SELECT statements that leverag…

Fix: after 4.1.4390
Fix from $1,600 2014-05-01
Integraxor HIGH 7.8
CVE-2014-0753

Stack-based buffer overflow in the SCADA server in Ecava IntegraXor before 4.1.4390 allows remote attackers to cause a denial of service (system cras…

Fix: after 4.1.4380
Fix from $1,950 2014-01-21
Integraxor MEDIUM 5.0
CVE-2014-0752

The SCADA server in Ecava IntegraXor before 4.1.4369 allows remote attackers to read arbitrary project backup files via a crafted URL.

Fix: after 4.1.4360
Fix from $1,600 2014-01-09
Integraxor HIGH 9.3
CVE-2012-4700

Multiple buffer overflows in an ActiveX control in PE3DO32A.ocx in IntegraXor SCADA Server 4.00 build 4250.0 and earlier allow remote attackers to ex…

Fix: after 4.00
Fix from $1,950 2013-02-08
Integraxor HIGH 9.3
CVE-2012-0246EPSS 6%

Directory traversal vulnerability in an unspecified ActiveX control in Ecava IntegraXor before 3.71.4200 allows remote attackers to execute arbitrary…

Fix: after 3.60.4061
Fix from $1,950 2012-04-02
Integraxor HIGH 7.5
CVE-2011-1562

Ecava IntegraXor HMI before n 3.60 (Build 4032) allows remote attackers to bypass authentication and execute arbitrary SQL statements via unspecified…

Fix: after 3.60
Fix from $1,950 2011-04-05
Integraxor MEDIUM 6.9
CVE-2010-4599

Untrusted search path vulnerability in Ecava IntegraXor 3.6.4000.0 allows local users to gain privileges via a Trojan horse dwmapi.dll file in the cu…

Mitigation only
Fix from $1,600 2010-12-23
Integraxor HIGH 10.0
CVE-2010-4597EPSS 19%

Stack-based buffer overflow in the save method in the IntegraXor.Project ActiveX control in igcomm.dll in Ecava IntegraXor Human-Machine Interface (H…

Fix: after 3.5.3900.5
Fix from $1,950 2010-12-23
Integraxor MEDIUM 5.0
CVE-2010-4598EPSS 26%

Directory traversal vulnerability in Ecava IntegraXor 3.6.4000.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in th…

Fix: after 3.6.4000.0
Fix from $1,600 2010-12-23