Vulnerability index

Browse CVEs

11 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Ey As525f001 Firmware MEDIUM 6.5
CVE-2023-27927

An authenticated malicious user could acquire the simple mail transfer protocol (SMTP) Password in cleartext format, despite it being protected and h…

Mitigation only
Fix from $1,600 2023-03-27
Ey As525f001 Firmware MEDIUM 6.5
CVE-2023-28652

An authenticated malicious user could successfully upload a malicious image could lead to a denial-of-service condition.

No fix yet
Fix from $1,600 2023-03-27
Ey As525f001 Firmware MEDIUM 6.1
CVE-2023-22300

An unauthenticated remote attacker could force all authenticated users, such as administrative users, to perform unauthorized actions by viewing the …

No fix yet
Fix from $1,600 2023-03-27
Ey As525f001 Firmware MEDIUM 6.1
CVE-2023-28650

An unauthenticated remote attacker could provide a malicious link and trick an unsuspecting user into clicking on it. If clicked, the attacker could …

Mitigation only
Fix from $1,600 2023-03-27
Ey As525f001 Firmware MEDIUM 5.4
CVE-2023-28655

A malicious user could leverage this vulnerability to escalate privileges or perform unauthorized actions in the context of the targeted privileged u…

No fix yet
Fix from $1,600 2023-03-27
Nova 220 Eyk220f001 Firmware HIGH 7.5
CVE-2023-0053

SAUTER Controls Nova 200–220 Series with firmware version 3.3-006 and prior and BACnetstac version 4.2.1 and prior have only FTP and Telnet availab…

Fix: after 4.2.1
Fix from $1,950 2023-03-02
Nova 220 Eyk220f001 Firmware HIGH 8.8
CVE-2023-0052

SAUTER Controls Nova 200–220 Series with firmware version 3.3-006 and prior and BACnetstac version 4.2.1 and prior allows the execution of commands w…

Fix: after 3.3-006
Fix from $1,950 2023-01-20
Moduweb Firmware CRITICAL 9.6
CVE-2022-40190

SAUTER Controls moduWeb firmware version 2.7.1 is vulnerable to reflective cross-site scripting (XSS). The web application does not adequately saniti…

Mitigation only
Fix from $2,300 2022-10-31
Case Suite HIGH 7.5
CVE-2018-17912

An XXE vulnerability exists in CASE Suite Versions 3.10 and prior when processing parameter entities, which may allow remote file disclosure.

Fix: after 3.10
Fix from $1,950 2018-11-02
Novaweb Web Hmi HIGH 7.2
CVE-2016-10224

An issue was discovered in Sauter NovaWeb web HMI. The application uses a protection mechanism that relies on the existence or values of a cookie, bu…

Mitigation only
Fix from $1,950 2017-02-13
Moduweb Vision MEDIUM 6.5
CVE-2015-7916

Cross-site scripting (XSS) vulnerability in Sauter EY-WS505F0x0 moduWeb Vision before 1.6.0 allows remote authenticated users to inject arbitrary web…

Fix: after 1.5
Fix from $1,600 2016-02-06