rapidscada records
11 published records for vendor rapidscada.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-732 Incorrect Permission Assignment for Critical Resource2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-23 Relative Path Traversal1
- CWE-256 Plaintext Storage of a Password1
- CWE-434 Unrestricted Upload of File with Dangerous Type1
- CWE-521 Weak Password Requirements1
The weakness classes this vendor ships most often: where to look.
CWEAll records
11 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2024-21764No exploit | Use of Hard-Coded Credentials in Rapid SCADArapidscada · rapid scada · CWE-798 | Critical9.8 | — | 0.6% | Feb 1, 2024 |
35Monitor | CVE-2024-21852No exploit | Rapid SCADA Path Traversalrapidscada · rapid scada · CWE-22 | High8.8 | — | 1.2% | Feb 1, 2024 |
31Monitor | CVE-2018-5313No exploit | A vulnerability allows local attackers to escalate privilege on Rapid Scada 5.5.0 because of weak C:\SCADA permissions.rapidscada · rapid scada · CWE-732 | High7.8 | — | 0.6% | Mar 8, 2018 |
31Monitor | CVE-2020-22722No exploit | Rapid Software LLC Rapid SCADA 5.8.0 is affected by a local privilege escalation vulnerability in the ScadaAgentSvc.exe executable file.rapidscada · rapid scada · CWE-434 | High7.8 | — | 0.5% | Aug 14, 2020 |
31Monitor | CVE-2024-22016No exploit | Incorrect Permission Assignment for Critical Resource in Rapid SCADArapidscada · rapid scada · CWE-732 | High7.8 | — | 0.2% | Feb 1, 2024 |
30Monitor | CVE-2024-47221No exploit | CheckUser in ScadaServerEngine/MainLogic.cs in Rapid SCADA through 5.8.4 allows an empty password.rapidscada · rapid scada · CWE-521 | High7.5 | — | 0.4% | Sep 21, 2024 |
26Monitor | CVE-2024-22096No exploit | Relative Path Traversal in Rapid SCADArapidscada · rapid scada · CWE-23 | Medium6.5 | — | 0.6% | Feb 1, 2024 |
24Monitor | CVE-2022-44153No exploit | Rapid Software LLC Rapid SCADA 5.8.4 is vulnerable to Cross Site Scripting (XSS).rapidscada · rapid scada · CWE-79 | Medium6.1 | — | 0.4% | Dec 6, 2022 |
22Monitor | CVE-2024-21869No exploit | Plaintext Storage of a Password in Rapid SCADArapidscada · rapid scada · CWE-256 | Medium5.5 | — | 0.2% | Feb 1, 2024 |
21Monitor | CVE-2024-21866No exploit | Generation of Error Message Containing Sensitive Information in Rapid SCADArapidscada · rapid scada · CWE-209 | Medium5.3 | — | 0.4% | Feb 1, 2024 |
21Monitor | CVE-2024-21794No exploit | Open Redirect in Rapid SCADArapidscada · rapid scada · CWE-601 | Medium5.4 | — | 0.3% | Feb 1, 2024 |
- CVE-2024-2176439Monitor
Use of Hard-Coded Credentials in Rapid SCADA
CriticalCVSS 9.8No exploitEPSS 1%rapidscada · rapid scadaFeb 1, 2024
- CVE-2024-2185235Monitor
Rapid SCADA Path Traversal
HighCVSS 8.8No exploitEPSS 1%rapidscada · rapid scadaFeb 1, 2024
- CVE-2018-531331Monitor
A vulnerability allows local attackers to escalate privilege on Rapid Scada 5.5.0 because of weak C:\SCADA permissions.
HighCVSS 7.8No exploitEPSS 1%rapidscada · rapid scadaMar 8, 2018
- CVE-2020-2272231Monitor
Rapid Software LLC Rapid SCADA 5.8.0 is affected by a local privilege escalation vulnerability in the ScadaAgentSvc.exe executable file.
HighCVSS 7.8No exploitEPSS 0%rapidscada · rapid scadaAug 14, 2020
- CVE-2024-2201631Monitor
Incorrect Permission Assignment for Critical Resource in Rapid SCADA
HighCVSS 7.8No exploitEPSS 0%rapidscada · rapid scadaFeb 1, 2024
- CVE-2024-4722130Monitor
CheckUser in ScadaServerEngine/MainLogic.cs in Rapid SCADA through 5.8.4 allows an empty password.
HighCVSS 7.5No exploitEPSS 0%rapidscada · rapid scadaSep 21, 2024
- CVE-2024-2209626Monitor
Relative Path Traversal in Rapid SCADA
MediumCVSS 6.5No exploitEPSS 1%rapidscada · rapid scadaFeb 1, 2024
- CVE-2022-4415324Monitor
Rapid Software LLC Rapid SCADA 5.8.4 is vulnerable to Cross Site Scripting (XSS).
MediumCVSS 6.1No exploitEPSS 0%rapidscada · rapid scadaDec 6, 2022
- CVE-2024-2186922Monitor
Plaintext Storage of a Password in Rapid SCADA
MediumCVSS 5.5No exploitEPSS 0%rapidscada · rapid scadaFeb 1, 2024
- CVE-2024-2186621Monitor
Generation of Error Message Containing Sensitive Information in Rapid SCADA
MediumCVSS 5.3No exploitEPSS 0%rapidscada · rapid scadaFeb 1, 2024
- CVE-2024-2179421Monitor
Open Redirect in Rapid SCADA
MediumCVSS 5.4No exploitEPSS 0%rapidscada · rapid scadaFeb 1, 2024