microsys records
7 published records for vendor microsys.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer4
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-399 Resource Management Errors1
The weakness classes this vendor ships most often: where to look.
CWEAll records
7 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2014-9205No exploit | Stack-based buffer overflow in the PmBase64Decode function in an unspecified demonstration application in MICROSYS PROMOTIC stable before 8.microsys · promotic · CWE-119 | High7.5 | — | 4.7% | Mar 29, 2015 |
31Monitor | CVE-2011-4874No exploit | Use-after-free vulnerability in MICROSYS PROMOTIC before 8.1.7 allows user-assisted remote attackers to execute arbitrary code or cause a demicrosys · promotic · CWE-399 | High7.9 | — | 1.5% | Apr 13, 2012 |
28Monitor | CVE-2011-4518Proof of concept | Directory traversal vulnerability in the PmWebDir object in the web server in MICROSYS PROMOTIC before 8.1.5 allows remote attackers to readmicrosys · promotic · CWE-22 | Medium5.0 | — | 26.4% | May 23, 2013 |
20Monitor | CVE-2000-1173Proof of concept | Microsys CyberPatrol uses weak encryption (trivial encoding) for credit card numbers and uses no encryption for the remainder of the informamicrosys · cyberpatrol | Medium5.0 | — | 1.6% | Jan 9, 2001 |
20Monitor | CVE-2016-0869No exploit | Heap-based buffer overflow in MICROSYS PROMOTIC before 8.3.11 allows remote authenticated users to cause a denial of service via a malformedmicrosys · promotic · CWE-119 | Medium5.0 | — | 1.0% | Jan 26, 2016 |
18Monitor | CVE-2011-4520Proof of concept | Heap-based buffer overflow in an ActiveX component in MICROSYS PROMOTIC before 8.1.5 allows remote attackers to cause a denial of service vimicrosys · promotic · CWE-119 | Medium4.3 | — | 2.4% | May 23, 2013 |
18Monitor | CVE-2011-4519Proof of concept | Stack-based buffer overflow in an ActiveX component in MICROSYS PROMOTIC before 8.1.5 allows remote attackers to cause a denial of service vmicrosys · promotic · CWE-119 | Medium4.3 | — | 2.4% | May 23, 2013 |
- CVE-2014-920531Monitor
Stack-based buffer overflow in the PmBase64Decode function in an unspecified demonstration application in MICROSYS PROMOTIC stable before 8.
HighCVSS 7.5No exploitEPSS 5%microsys · promoticMar 29, 2015
- CVE-2011-487431Monitor
Use-after-free vulnerability in MICROSYS PROMOTIC before 8.1.7 allows user-assisted remote attackers to execute arbitrary code or cause a de
HighCVSS 7.9No exploitEPSS 2%microsys · promoticApr 13, 2012
- CVE-2011-451828Monitor
Directory traversal vulnerability in the PmWebDir object in the web server in MICROSYS PROMOTIC before 8.1.5 allows remote attackers to read
MediumCVSS 5.0Proof of conceptEPSS 26%microsys · promoticMay 23, 2013
- CVE-2000-117320Monitor
Microsys CyberPatrol uses weak encryption (trivial encoding) for credit card numbers and uses no encryption for the remainder of the informa
MediumCVSS 5.0Proof of conceptEPSS 2%microsys · cyberpatrolJan 9, 2001
- CVE-2016-086920Monitor
Heap-based buffer overflow in MICROSYS PROMOTIC before 8.3.11 allows remote authenticated users to cause a denial of service via a malformed
MediumCVSS 5.0No exploitEPSS 1%microsys · promoticJan 26, 2016
- CVE-2011-452018Monitor
Heap-based buffer overflow in an ActiveX component in MICROSYS PROMOTIC before 8.1.5 allows remote attackers to cause a denial of service vi
MediumCVSS 4.3Proof of conceptEPSS 2%microsys · promoticMay 23, 2013
- CVE-2011-451918Monitor
Stack-based buffer overflow in an ActiveX component in MICROSYS PROMOTIC before 8.1.5 allows remote attackers to cause a denial of service v
MediumCVSS 4.3Proof of conceptEPSS 2%microsys · promoticMay 23, 2013