Skip to content
Noroxi

xylem records

7 published records for vendor xylem.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

7 records
  • Rockwell Automation ISaGRAF5 Runtime Relative Path Traversal

    CriticalCVSS 9.8No exploitEPSS 6%

    schneider-electric · easergy t300 firmwareMar 18, 2022

  • SQL injection vulnerability was discovered in Aanderaa GeoView Webservice prior to version 2.1.3 that could allow an unauthenticated attacke

    CriticalCVSS 9.8No exploitEPSS 2%

    xylem · aanderaa geoviewDec 8, 2021

  • Rockwell Automation ISaGRAF5 Runtime Cleartext Transmission of Sensitive Information

    HighCVSS 8.8No exploitEPSS 2%

    schneider-electric · easergy t300 firmwareMar 18, 2022

  • Use of hardcoded credentials impacting AquaView versions 1.60, 7.x, 8.x

    HighCVSS 8.8No exploitEPSS 0%

    xylem · aquaviewFeb 7, 2022

  • Rockwell Automation ISaGRAF5 Runtime Use of Hard-coded Cryptographic Key

    MediumCVSS 6.5No exploitEPSS 1%

    schneider-electric · easergy t300 firmwareMar 18, 2022

  • Rockwell Automation ISaGRAF5 Runtime Uncontrolled Search Path Element

    MediumCVSS 6.7No exploitEPSS 0%

    schneider-electric · easergy t300 firmwareMar 18, 2022

  • Rockwell Automation ISaGRAF5 Runtime Unprotected Storage of Credentials

    MediumCVSS 5.5No exploitEPSS 0%

    schneider-electric · easergy t300 firmwareMar 18, 2022