|
195481
|
7.6 |
HIGH
Network
|
microfocus
|
verastream_host_integrator
|
XML External Entity vulnerability in Micro Focus Verastream Host Integrator, affecting version 7.8 Update 1 and earlier versions. The vulnerability could allow the control of web browser and hijackin…
|
CWE-611
XXE
|
CVE-2021-22523
|
2024-11-21 14:50 |
2021-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195482
|
7.1 |
HIGH
Network
|
microfocus
|
verastream_host_integrator
|
Reflected Cross-Site Scripting vulnerability in Micro Focus Verastream Host Integrator, affecting version version 7.8 Update 1 and earlier versions. The vulnerability could allow disclosure of confid…
|
CWE-79
Cross-site Scripting
|
CVE-2021-22522
|
2024-11-21 14:50 |
2021-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195483
|
5.7 |
MEDIUM
Network
|
schneider-electric
|
c-bus_toolkit
|
A CWE-306: Missing Authentication for Critical Function vulnerability exists in C-Bus Toolkit v1.15.8 and prior that could allow an attacker to use a crafted webpage to obtain remote access to the sy…
|
-
|
CVE-2021-22784
|
2024-11-21 14:50 |
2021-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195484
|
7.8 |
HIGH
Local
|
schneider-electric
|
sosafe_configurable
|
A CWE-502: Deserialization of Untrusted Data vulnerability exists that could cause code execution by opening a malicious project file.
|
-
|
CVE-2021-22777
|
2024-11-21 14:50 |
2021-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195485
|
9.8 |
CRITICAL
Network
|
schneider-electric
|
t200i_firmware t200e_firmware t200p_firmware
|
A CWE-306: Missing Authentication for Critical Function vulnerability exists in Easergy T200 ((Modbus) SC2-04MOD-07000100 and earlier), Easergy T200 ((IEC104) SC2-04IEC-07000100 and earlier), and Eas…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2021-22772
|
2024-11-21 14:50 |
2021-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195486
|
7.3 |
HIGH
Local
|
schneider-electric
|
easergy_t300_firmware
|
A CWE-1236: Improper Neutralization of Formula Elements in a CSV File vulnerability exists in Easergy T300 with firmware V2.7.1 and older that would allow arbitrary command execution.
|
-
|
CVE-2021-22771
|
2024-11-21 14:50 |
2021-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195487
|
6.5 |
MEDIUM
Network
|
schneider-electric
|
easergy_t300_firmware
|
A CWE-200: Information Exposure vulnerability exists in Easergy T300 with firmware V2.7.1 and older that exposes sensitive information to an actor not explicitly authorized to have access to that inf…
|
-
|
CVE-2021-22770
|
2024-11-21 14:50 |
2021-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195488
|
7.5 |
HIGH
Network
|
schneider-electric
|
evlink_city_evc1s22p4_firmware evlink_city_evc1s7p4_firmware evlink_parking_evw2_firmware evlink_parking_evf2_firmware evlink_parking_ev.2_firmware evlink_smart_wallbox_evb1a_firmware
|
A CWE-759: Use of a One-Way Hash without a Salt vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1), EVlink Parking (EVW2 / EVF2 / EV.2 all versions prior to …
|
CWE-916
Use of Password Hash With Insufficient Computational Effort
|
CVE-2021-22774
|
2024-11-21 14:50 |
2021-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195489
|
6.5 |
MEDIUM
Network
|
schneider-electric
|
evlink_city_evc1s22p4_firmware evlink_city_evc1s7p4_firmware evlink_parking_evw2_firmware evlink_parking_evf2_firmware evlink_parking_ev.2_firmware evlink_smart_wallbox_evb1a_firmware
|
A CWE-620: Unverified Password Change vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1), EVlink Parking (EVW2 / EVF2 / EV.2 all versions prior to R8 V3.4.0.…
|
-
|
CVE-2021-22773
|
2024-11-21 14:50 |
2021-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195490
|
9.8 |
CRITICAL
Network
|
schneider-electric
|
evlink_city_evc1s22p4_firmware evlink_city_evc1s7p4_firmware evlink_parking_evw2_firmware evlink_parking_evf2_firmware evlink_parking_ev.2_firmware evlink_smart_wallbox_evb1a_firmware
|
A CWE-798: Use of Hard-coded Credentials vulnerability exists in EVlink City (EVC1S22P4 / EVC1S7P4 all versions prior to R8 V3.4.0.1), EVlink Parking (EVW2 / EVF2 / EV.2 all versions prior to R8 V3.4…
|
-
|
CVE-2021-22730
|
2024-11-21 14:50 |
2021-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|