Vulnerability index

Browse CVEs

13 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Scadapro Server MEDIUM 5.5
CVE-2024-3746

The entire parent directory - C:\ScadaPro and its sub-directories and files are configured by default to allow user, including unprivileged users, …

Mitigation only
Fix from $1,600 2024-04-30
Scadapro Server HIGH 7.8
CVE-2022-3263

The security descriptor of Measuresoft ScadaPro Server version 6.7 has inconsistent permissions, which could allow a local user with limited privileg…

Mitigation only
Fix from $1,950 2022-09-23
Scadapro Server HIGH 7.8
CVE-2022-2892

Measuresoft ScadaPro Server (Versions prior to 6.8.0.1) uses an unmaintained ActiveX control, which may allow an out-of-bounds write condition while …

Fix: 6.8.0.1+
Fix from $1,950 2022-08-31
Scadapro Server HIGH 7.8
CVE-2022-2894

Measuresoft ScadaPro Server (All Versions) uses unmaintained ActiveX controls. The controls may allow seven untrusted pointer deference instances whi…

Mitigation only
Fix from $1,950 2022-08-31
Scadapro Server HIGH 7.8
CVE-2022-2895

Measuresoft ScadaPro Server (All Versions) uses unmaintained ActiveX controls. These controls may allow two stack-based buffer overflow instances whi…

Mitigation only
Fix from $1,950 2022-08-31
Scadapro Server HIGH 7.8
CVE-2022-2896

Measuresoft ScadaPro Server (All Versions) allows use after free while processing a specific project file.

Mitigation only
Fix from $1,950 2022-08-31
Scadapro Client HIGH 7.8
CVE-2022-2897

Measuresoft ScadaPro Server and Client (All Versions) do not properly resolve links before file access; this could allow privilege escalation..

Mitigation only
Fix from $1,950 2022-08-31
Scadapro Client MEDIUM 5.5
CVE-2022-2898

Measuresoft ScadaPro Server and Client (All Versions) do not properly resolve links before file access; this could allow a denial-of-service conditio…

Mitigation only
Fix from $1,600 2022-08-31
Scadapro Client HIGH 7.2
CVE-2012-1824

Untrusted search path vulnerability in Measuresoft ScadaPro Client before 4.0.0 and ScadaPro Server before 4.0.0 allows local users to gain privilege…

Fix: after 3.3.1
Fix from $1,950 2012-05-25
Scadapro HIGH 10.0
CVE-2011-3495EPSS 10%

Multiple directory traversal vulnerabilities in service.exe in Measuresoft ScadaPro 4.0.0 and earlier allow remote attackers to read, modify, or dele…

Fix: after 4.0.0
Fix from $1,950 2011-09-16
Scadapro HIGH 10.0
CVE-2011-3496EPSS 14%

service.exe in Measuresoft ScadaPro 4.0.0 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) BF, (…

Fix: after 4.0.0
Fix from $1,950 2011-09-16
Scadapro HIGH 10.0
CVE-2011-3497EPSS 57%

service.exe in Measuresoft ScadaPro 4.0.0 and earlier allows remote attackers to execute arbitrary DLL functions via the XF function, possibly relate…

Fix: after 4.0.0
Fix from $1,950 2011-09-16
Scadapro HIGH 10.0
CVE-2011-3490EPSS 36%

Multiple stack-based buffer overflows in service.exe in Measuresoft ScadaPro 4.0.0 and earlier allow remote attackers to cause a denial of service (c…

Fix: after 4.0.0
Fix from $1,950 2011-09-16