Записи idec
6 опубликованных записей вендора idec.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-522 Insufficiently Protected Credentials3
- CWE-312 Cleartext Storage of Sensitive Information2
- CWE-319 Cleartext Transmission of Sensitive Information1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
6 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2021-37400Эксплойта нет | An attacker may obtain the user credentials from the communication between the PLC and the software.idec · data file manager · CWE-522 | Критическая9,8 | — | 1,3 % | 28 дек. 2021 г. |
39Наблюдать | CVE-2021-37401Эксплойта нет | An attacker may obtain the user credentials from file servers, backup repositories, or ZLD files saved in SD cards.idec · data file manager · CWE-522 | Критическая9,8 | — | 1,3 % | 28 дек. 2021 г. |
32Наблюдать | CVE-2024-41716Эксплойта нет | Cleartext storage of sensitive information vulnerability exists in WindLDR and WindO/I-NV4.idec · windldr · CWE-312 | Высокая8,1 | — | 0,4 % | 3 сент. 2024 г. |
30Наблюдать | CVE-2021-20827Эксплойта нет | Plaintext storage of a password vulnerability in IDEC PLCs (FC6A Series MICROSmart All-in-One CPU module v2.32 and earlier, FC6A Series MICRidec · microsmart fc6a firmware · CWE-312 | Высокая7,5 | — | 0,6 % | 24 дек. 2021 г. |
30Наблюдать | CVE-2021-20826Эксплойта нет | Unprotected transport of credentials vulnerability in IDEC PLCs (FC6A Series MICROSmart All-in-One CPU module v2.32 and earlier, FC6A Seriesidec · microsmart fc6a firmware · CWE-522 | Высокая7,6 | — | 0,4 % | 24 дек. 2021 г. |
18Наблюдать | CVE-2024-41927Эксплойта нет | Cleartext transmission of sensitive information vulnerability exists in multiple IDEC PLCs.idec · kit-fc6a-24-kc firmware · CWE-319 | Средняя4,6 | — | 0,2 % | 3 сент. 2024 г. |
- CVE-2021-3740039Наблюдать
An attacker may obtain the user credentials from the communication between the PLC and the software.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %idec · data file manager28 дек. 2021 г.
- CVE-2021-3740139Наблюдать
An attacker may obtain the user credentials from file servers, backup repositories, or ZLD files saved in SD cards.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %idec · data file manager28 дек. 2021 г.
- CVE-2024-4171632Наблюдать
Cleartext storage of sensitive information vulnerability exists in WindLDR and WindO/I-NV4.
ВысокаяCVSS 8,1Эксплойта нетEPSS 0 %idec · windldr3 сент. 2024 г.
- CVE-2021-2082730Наблюдать
Plaintext storage of a password vulnerability in IDEC PLCs (FC6A Series MICROSmart All-in-One CPU module v2.32 and earlier, FC6A Series MICR
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %idec · microsmart fc6a firmware24 дек. 2021 г.
- CVE-2021-2082630Наблюдать
Unprotected transport of credentials vulnerability in IDEC PLCs (FC6A Series MICROSmart All-in-One CPU module v2.32 and earlier, FC6A Series
ВысокаяCVSS 7,6Эксплойта нетEPSS 0 %idec · microsmart fc6a firmware24 дек. 2021 г.
- CVE-2024-4192718Наблюдать
Cleartext transmission of sensitive information vulnerability exists in multiple IDEC PLCs.
СредняяCVSS 4,6Эксплойта нетEPSS 0 %idec · kit-fc6a-24-kc firmware3 сент. 2024 г.