idec kayıtları
idec üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-522 Insufficiently Protected Credentials3
- CWE-312 Cleartext Storage of Sensitive Information2
- CWE-319 Cleartext Transmission of Sensitive Information1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2021-37400İstismar yok | An attacker may obtain the user credentials from the communication between the PLC and the software.idec · data file manager · CWE-522 | Kritik9,8 | — | %1,3 | 28 Ara 2021 |
39İzleyin | CVE-2021-37401İstismar yok | An attacker may obtain the user credentials from file servers, backup repositories, or ZLD files saved in SD cards.idec · data file manager · CWE-522 | Kritik9,8 | — | %1,3 | 28 Ara 2021 |
32İzleyin | CVE-2024-41716İstismar yok | Cleartext storage of sensitive information vulnerability exists in WindLDR and WindO/I-NV4.idec · windldr · CWE-312 | Yüksek8,1 | — | %0,4 | 3 Eyl 2024 |
30İzleyin | CVE-2021-20827İstismar yok | Plaintext storage of a password vulnerability in IDEC PLCs (FC6A Series MICROSmart All-in-One CPU module v2.32 and earlier, FC6A Series MICRidec · microsmart fc6a firmware · CWE-312 | Yüksek7,5 | — | %0,6 | 24 Ara 2021 |
30İzleyin | CVE-2021-20826İstismar yok | Unprotected transport of credentials vulnerability in IDEC PLCs (FC6A Series MICROSmart All-in-One CPU module v2.32 and earlier, FC6A Seriesidec · microsmart fc6a firmware · CWE-522 | Yüksek7,6 | — | %0,4 | 24 Ara 2021 |
18İzleyin | CVE-2024-41927İstismar yok | Cleartext transmission of sensitive information vulnerability exists in multiple IDEC PLCs.idec · kit-fc6a-24-kc firmware · CWE-319 | Orta4,6 | — | %0,2 | 3 Eyl 2024 |
- CVE-2021-3740039İzleyin
An attacker may obtain the user credentials from the communication between the PLC and the software.
KritikCVSS 9,8İstismar yokEPSS %1idec · data file manager28 Ara 2021
- CVE-2021-3740139İzleyin
An attacker may obtain the user credentials from file servers, backup repositories, or ZLD files saved in SD cards.
KritikCVSS 9,8İstismar yokEPSS %1idec · data file manager28 Ara 2021
- CVE-2024-4171632İzleyin
Cleartext storage of sensitive information vulnerability exists in WindLDR and WindO/I-NV4.
YüksekCVSS 8,1İstismar yokEPSS %0idec · windldr3 Eyl 2024
- CVE-2021-2082730İzleyin
Plaintext storage of a password vulnerability in IDEC PLCs (FC6A Series MICROSmart All-in-One CPU module v2.32 and earlier, FC6A Series MICR
YüksekCVSS 7,5İstismar yokEPSS %1idec · microsmart fc6a firmware24 Ara 2021
- CVE-2021-2082630İzleyin
Unprotected transport of credentials vulnerability in IDEC PLCs (FC6A Series MICROSmart All-in-One CPU module v2.32 and earlier, FC6A Series
YüksekCVSS 7,6İstismar yokEPSS %0idec · microsmart fc6a firmware24 Ara 2021
- CVE-2024-4192718İzleyin
Cleartext transmission of sensitive information vulnerability exists in multiple IDEC PLCs.
OrtaCVSS 4,6İstismar yokEPSS %0idec · kit-fc6a-24-kc firmware3 Eyl 2024