softwaretoolbox records
8 published records for vendor softwaretoolbox.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-122 Heap-based Buffer Overflow3
- CWE-121 Stack-based Buffer Overflow2
- CWE-20 Improper Input Validation1
- CWE-297 Improper Validation of Certificate with Host Mismatch1
- CWE-416 Use After Free1
The weakness classes this vendor ships most often: where to look.
CWEAll records
8 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
42Plan | CVE-2020-27265No exploit | KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC-Aggregator: All verge · industrial gateway server · CWE-121 | Critical9.8 | — | 10.1% | Jan 13, 2021 |
40Plan | CVE-2022-2825No exploit | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kepware KEPServerEX 6.11.718.0.ge · industrial gateway server · CWE-121 | Critical9.8 | — | 3.4% | Mar 29, 2023 |
37Monitor | CVE-2020-27263No exploit | KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC-Aggregator: All verge · industrial gateway server · CWE-122 | Critical9.1 | — | 4.9% | Jan 13, 2021 |
37Monitor | CVE-2020-27267No exploit | KEPServerEX v6.0 to v6.9, ThingWorx Kepware Server v6.8 and v6.9, ThingWorx Industrial Connectivity (all versions), OPC-Aggregator (all versge · industrial gateway server · CWE-416 | Critical9.1 | — | 4.9% | Jan 13, 2021 |
37Monitor | CVE-2022-2848No exploit | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kepware KEPServerEX 6.11.718.0.ge · industrial gateway server · CWE-122 | Critical9.1 | — | 3.4% | Mar 29, 2023 |
36Monitor | CVE-2023-5908No exploit | Heap Based Buffer Overflow in PTC KEPServerExge · industrial gateway server · CWE-122 | Critical9.1 | — | 1.0% | Nov 30, 2023 |
30Monitor | CVE-2023-5909No exploit | Improper Validation of Certificate with Host Mismatch in PTC KEPServerExge · industrial gateway server · CWE-297 | High7.5 | — | 0.4% | Nov 30, 2023 |
28Monitor | CVE-2013-2804No exploit | The DNP Master Driver in Software Toolbox TOP Server before 5.12.140.0 allows remote attackers to cause a denial of service (master-station softwaretoolbox · top server · CWE-20 | High7.1 | — | 1.3% | Aug 28, 2013 |
- CVE-2020-2726542Plan
KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC-Aggregator: All ver
CriticalCVSS 9.8No exploitEPSS 10%ge · industrial gateway serverJan 13, 2021
- CVE-2022-282540Plan
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kepware KEPServerEX 6.11.718.0.
CriticalCVSS 9.8No exploitEPSS 3%ge · industrial gateway serverMar 29, 2023
- CVE-2020-2726337Monitor
KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC-Aggregator: All ver
CriticalCVSS 9.1No exploitEPSS 5%ge · industrial gateway serverJan 13, 2021
- CVE-2020-2726737Monitor
KEPServerEX v6.0 to v6.9, ThingWorx Kepware Server v6.8 and v6.9, ThingWorx Industrial Connectivity (all versions), OPC-Aggregator (all vers
CriticalCVSS 9.1No exploitEPSS 5%ge · industrial gateway serverJan 13, 2021
- CVE-2022-284837Monitor
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kepware KEPServerEX 6.11.718.0.
CriticalCVSS 9.1No exploitEPSS 3%ge · industrial gateway serverMar 29, 2023
- CVE-2023-590836Monitor
Heap Based Buffer Overflow in PTC KEPServerEx
CriticalCVSS 9.1No exploitEPSS 1%ge · industrial gateway serverNov 30, 2023
- CVE-2023-590930Monitor
Improper Validation of Certificate with Host Mismatch in PTC KEPServerEx
HighCVSS 7.5No exploitEPSS 0%ge · industrial gateway serverNov 30, 2023
- CVE-2013-280428Monitor
The DNP Master Driver in Software Toolbox TOP Server before 5.12.140.0 allows remote attackers to cause a denial of service (master-station
HighCVSS 7.1No exploitEPSS 1%softwaretoolbox · top serverAug 28, 2013