SUBNET records
8 published records for vendor subnet.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-1357 Reliance on Insufficiently Trustworthy Component3
- CWE-20 Improper Input Validation2
- CWE-294 Authentication Bypass by Capture-replay1
- CWE-428 Unquoted Search Path or Element1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
8 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
36Monitor | CVE-2023-29158No exploit | SUBNET PowerSYSTEM Center Authentication Bypass by Capture-replaysubnet · powersystem center · CWE-294 | Critical9.1 | — | 0.6% | Jun 19, 2023 |
34Monitor | CVE-2024-3313No exploit | SUBNET PowerSYSTEM Server and Substation Server Reliance on Insufficiently Trustworthy Componentsubnet solutions · powersystem server · CWE-1357 | High8.6 | — | 0.3% | Apr 9, 2024 |
34Monitor | CVE-2024-26024No exploit | SUBNET Substation Server Reliance on Insufficiently Trustworthy Componentsubnet · substation server · CWE-1357 | High8.6 | — | 0.2% | May 28, 2024 |
34Monitor | CVE-2024-28042No exploit | SUBNET PowerSYSTEM Center Reliance on Insufficiently Trustworthy Componentsubnet · powersystem center · CWE-1357 | High8.6 | — | 0.2% | May 15, 2024 |
31Monitor | CVE-2023-6631No exploit | Subnet Solutions Inc. PowerSYSTEM Center Unquoted Search Path or Elementsubnet · powersystem center · CWE-428 | High7.8 | — | 0.2% | Jan 8, 2024 |
29Monitor | CVE-2014-2357No exploit | SUBNET SubSTATION Server 2 Telegyr 8979 Master Protocol Improper Input Validationsubnet · substation server · CWE-20 | High7.1 | — | 2.8% | Aug 11, 2014 |
24Monitor | CVE-2023-32659No exploit | SUBNET PowerSYSTEM Center Cross-site Scriptingsubnet · powersystem center · CWE-79 | Medium6.1 | — | 0.4% | Jun 19, 2023 |
17Monitor | CVE-2013-2788No exploit | The DNP3 Slave service in SUBNET Solutions SubSTATION Server 2.7.0033 and 2.8.0106 allows remote attackers to cause a denial of service (unhsubnet · substation server · CWE-20 | Medium4.3 | — | 1.2% | Sep 17, 2013 |
- CVE-2023-2915836Monitor
SUBNET PowerSYSTEM Center Authentication Bypass by Capture-replay
CriticalCVSS 9.1No exploitEPSS 1%subnet · powersystem centerJun 19, 2023
- CVE-2024-331334Monitor
SUBNET PowerSYSTEM Server and Substation Server Reliance on Insufficiently Trustworthy Component
HighCVSS 8.6No exploitEPSS 0%subnet solutions · powersystem serverApr 9, 2024
- CVE-2024-2602434Monitor
SUBNET Substation Server Reliance on Insufficiently Trustworthy Component
HighCVSS 8.6No exploitEPSS 0%subnet · substation serverMay 28, 2024
- CVE-2024-2804234Monitor
SUBNET PowerSYSTEM Center Reliance on Insufficiently Trustworthy Component
HighCVSS 8.6No exploitEPSS 0%subnet · powersystem centerMay 15, 2024
- CVE-2023-663131Monitor
Subnet Solutions Inc. PowerSYSTEM Center Unquoted Search Path or Element
HighCVSS 7.8No exploitEPSS 0%subnet · powersystem centerJan 8, 2024
- CVE-2014-235729Monitor
SUBNET SubSTATION Server 2 Telegyr 8979 Master Protocol Improper Input Validation
HighCVSS 7.1No exploitEPSS 3%subnet · substation serverAug 11, 2014
- CVE-2023-3265924Monitor
SUBNET PowerSYSTEM Center Cross-site Scripting
MediumCVSS 6.1No exploitEPSS 0%subnet · powersystem centerJun 19, 2023
- CVE-2013-278817Monitor
The DNP3 Slave service in SUBNET Solutions SubSTATION Server 2.7.0033 and 2.8.0106 allows remote attackers to cause a denial of service (unh
MediumCVSS 4.3No exploitEPSS 1%subnet · substation serverSep 17, 2013