|
196451
|
7.8 |
HIGH
Local
|
schneider-electric
|
interactive_graphical_scada_system
|
A CWE-787: Out-of-bounds Write vulnerability exists in IGSS Definition (Def.exe) version 14.0.0.20247, that could cause Remote Code Execution when malicious CGF (Configuration Group File) file is imp…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-7552
|
2024-11-21 14:37 |
2020-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196452
|
7.8 |
HIGH
Local
|
schneider-electric
|
interactive_graphical_scada_system
|
A CWE-787: Out-of-bounds Write vulnerability exists in IGSS Definition (Def.exe) version 14.0.0.20247, that could cause Remote Code Execution when malicious CGF (Configuration Group File) file is imp…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-7551
|
2024-11-21 14:37 |
2020-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196453
|
7.8 |
HIGH
Local
|
schneider-electric
|
interactive_graphical_scada_system
|
A CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists in IGSS Definition (Def.exe) version 14.0.0.20247 and prior that could cause Remote Code Executi…
|
-
|
CVE-2020-7550
|
2024-11-21 14:37 |
2020-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196454
|
7.8 |
HIGH
Local
|
schneider-electric
|
operator_terminal_expert_runtime
|
A CWE-269 Improper Privilege Management vulnerability exists in EcoStruxureª Operator Terminal Expert runtime (Vijeo XD) that could cause privilege escalation on the workstation when interacting dire…
|
-
|
CVE-2020-7544
|
2024-11-21 14:37 |
2020-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196455
|
7.5 |
HIGH
Network
|
schneider-electric
|
ecostruxure_control_expert
|
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in PLC Simulator on EcoStruxureª Control Expert (now Unity Pro) (all versions) that could cause a crash of the PLC…
|
-
|
CVE-2020-7538
|
2024-11-21 14:37 |
2020-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196456
|
8.8 |
HIGH
Network
|
schneider-electric
|
modicon_tsxety4103_firmware modicon_tsxety5103_firmware modicon_tsxp574634_firmware modicon_tsxp575634_firmware modicon_tsxp576634_firmware modicon_quantum_140noe77101_firmware modi…
|
A CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their C…
|
-
|
CVE-2020-7564
|
2024-11-21 14:37 |
2020-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196457
|
8.8 |
HIGH
Network
|
schneider-electric
|
modicon_tsxety4103_firmware modicon_tsxety5103_firmware modicon_tsxp574634_firmware modicon_tsxp575634_firmware modicon_tsxp576634_firmware modicon_quantum_140noe77101_firmware modi…
|
A CWE-787: Out-of-bounds Write vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Communication Modules (see notification for details)…
|
-
|
CVE-2020-7563
|
2024-11-21 14:37 |
2020-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196458
|
8.1 |
HIGH
Network
|
schneider-electric
|
modicon_tsxety4103_firmware modicon_tsxety5103_firmware modicon_tsxp574634_firmware modicon_tsxp575634_firmware modicon_tsxp576634_firmware modicon_quantum_140noe77101_firmware modi…
|
A CWE-125: Out-of-Bounds Read vulnerability exists in the Web Server on Modicon M340, Modicon Quantum and Modicon Premium Legacy offers and their Communication Modules (see notification for details) …
|
-
|
CVE-2020-7562
|
2024-11-21 14:37 |
2020-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196459
|
8.8 |
HIGH
Network
|
tobesoft
|
xplatform
|
Improper input validation vulnerability exists in TOBESOFT XPLATFORM which could cause arbitrary .hta file execution when the command string is begun with http://, https://, mailto://
|
CWE-20
Improper Input Validation
|
CVE-2020-7841
|
2024-11-21 14:37 |
2020-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196460
|
9.8 |
CRITICAL
Network
|
y18n_project oracle siemens
|
y18n graalvm sinec_infrastructure_network_services
|
The package y18n before 3.2.2, 4.0.1 and 5.0.5, is vulnerable to Prototype Pollution.
|
CWE-1321
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
|
CVE-2020-7774
|
2024-11-21 14:37 |
2020-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|