Dragos
5 credited records · 0 in the last 12 months · 0 in CISA KEV
Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.
Credited records
Researchers| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
36Monitor | CVE-2024-28751No exploit | ifm: Hardcoded telnet credentials in Smart PLCifm · smart plc ac14xx firmware · CWE-798 | Critical9.1 | — | 0.6% | Jul 9, 2024 |
28Monitor | CVE-2024-28750No exploit | ifm: Deleting function in Smart PLC allows command injectionsifm · smart plc ac14xx firmware · CWE-78 | High7.2 | — | 0.8% | Jul 9, 2024 |
28Monitor | CVE-2024-28749No exploit | ifm: Writing file function in Smart PLC allows command injectionsifm · smart plc ac14xx firmware · CWE-78 | High7.2 | — | 0.8% | Jul 9, 2024 |
28Monitor | CVE-2024-28748No exploit | ifm: Reading function in Smart PLC allows command injectionsifm · smart plc ac14xx firmware · CWE-78 | High7.2 | — | 0.8% | Jul 9, 2024 |
39Monitor | CVE-2024-28747No exploit | ifm: Use of Hard-coded Credentialsifm · smart plc ac14xx firmware · CWE-798 | Critical9.8 | — | 0.7% | Jul 9, 2024 |
- CVE-2024-2875136Monitor
ifm: Hardcoded telnet credentials in Smart PLC
CriticalCVSS 9.1No exploitEPSS 1%ifm · smart plc ac14xx firmwareJul 9, 2024
- CVE-2024-2875028Monitor
ifm: Deleting function in Smart PLC allows command injections
HighCVSS 7.2No exploitEPSS 1%ifm · smart plc ac14xx firmwareJul 9, 2024
- CVE-2024-2874928Monitor
ifm: Writing file function in Smart PLC allows command injections
HighCVSS 7.2No exploitEPSS 1%ifm · smart plc ac14xx firmwareJul 9, 2024
- CVE-2024-2874828Monitor
ifm: Reading function in Smart PLC allows command injections
HighCVSS 7.2No exploitEPSS 1%ifm · smart plc ac14xx firmwareJul 9, 2024
- CVE-2024-2874739Monitor
ifm: Use of Hard-coded Credentials
CriticalCVSS 9.8No exploitEPSS 1%ifm · smart plc ac14xx firmwareJul 9, 2024