AutomationDirect kayıtları
automationdirect üreticisine ait 38 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-787 Out-of-bounds Write8
- CWE-319 Cleartext Transmission of Sensitive Information4
- CWE-121 Stack-based Buffer Overflow3
- CWE-288 Authentication Bypass Using an Alternate Path or Channel3
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-284 Improper Access Control2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
38 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2020-10920İstismar yok | This vulnerability allows remote attackers to execute arbitrary code on affected installations of C-MORE HMI EA9 Firmware version 6.52 touchautomationdirect · c-more hmi ea9 firmware · CWE-306 | Kritik9,8 | — | %4,9 | 23 Tem 2020 |
40Planlayın | CVE-2020-10921İstismar yok | This vulnerability allows remote attackers to issue commands on affected installations of C-MORE HMI EA9 Firmware version 6.52 touch screen automationdirect · c-more hmi ea9 firmware · CWE-306 | Kritik9,8 | — | %2,8 | 23 Tem 2020 |
40Planlayın | CVE-2020-6969İstismar yok | It is possible to unmask credentials and other sensitive information on “unprotected” project files, which may allow an attacker to remotelyautomationdirect · c-more ea9-rhi firmware · CWE-522 | Kritik9,8 | — | %2,4 | 5 Şub 2020 |
39İzleyin | CVE-2024-21785İstismar yok | A leftover debug code vulnerability exists in the Telnet Diagnostic Interface functionality of AutomationDirect P3-550E 1.2.10.9.automationdirect · p3-550e firmware · CWE-489 | Kritik9,8 | — | %1,5 | 28 May 2024 |
39İzleyin | CVE-2024-24963İstismar yok | A stack-based buffer overflow vulnerability exists in the Programming Software Connection FileSelect functionality of AutomationDirect P3-55automationdirect · p3-550e firmware · CWE-121 | Kritik9,8 | — | %1,2 | 28 May 2024 |
39İzleyin | CVE-2024-24962İstismar yok | A stack-based buffer overflow vulnerability exists in the Programming Software Connection FileSelect functionality of AutomationDirect P3-55automationdirect · p3-550e firmware · CWE-121 | Kritik9,8 | — | %1,2 | 28 May 2024 |
39İzleyin | CVE-2021-32984İstismar yok | Automation Direct CLICK PLC CPU Modules Authentication Bypass Using an Alternate Path or Channelautomationdirect · c0-10dd1e-d firmware · CWE-288 | Kritik9,8 | — | %1,1 | 4 Nis 2022 |
39İzleyin | CVE-2021-32980İstismar yok | Automation Direct CLICK PLC CPU Modules Authentication Bypass Using an Alternate Path or Channelautomationdirect · c0-10dd1e-d firmware · CWE-288 | Kritik9,8 | — | %1,1 | 4 Nis 2022 |
39İzleyin | CVE-2021-32986İstismar yok | Automation Direct CLICK PLC CPU Modules Authentication Bypass Using an Alternate Path or Channelautomationdirect · c0-10dd1e-d firmware · CWE-288 | Kritik9,8 | — | %1,1 | 4 Nis 2022 |
39İzleyin | CVE-2024-23601İstismar yok | A code injection vulnerability exists in the scan_lib.bin functionality of AutomationDirect P3-550E 1.2.10.9.automationdirect · p3-550e firmware · CWE-345 | Kritik9,8 | — | %0,7 | 28 May 2024 |
36İzleyin | CVE-2024-22187İstismar yok | A write-what-where vulnerability exists in the Programming Software Connection Remote Memory Diagnostics functionality of AutomationDirect Pautomationdirect · p3-550e firmware · CWE-284 | Kritik9,1 | — | %1,0 | 28 May 2024 |
36İzleyin | CVE-2022-2003İstismar yok | AutomationDirect DirectLOGIC with Serial Communication Cleartext Transmissionautomationdirect · d0-06dd1 firmware · CWE-319 | Kritik9,1 | — | %0,7 | 31 Ağu 2022 |
34İzleyin | CVE-2024-45368İstismar yok | AutomationDirect DirectLogic H2-DM1E Session Fixationautomationdirect · directlogic h2-dm1e · CWE-384 | Yüksek8,7 | — | %0,3 | 13 Eyl 2024 |
34İzleyin | CVE-2024-43099İstismar yok | AutomationDirect DirectLogic H2-DM1E Authentication Bypass by Capture-replayautomationdirect · directlogic h2-dm1e · CWE-294 | Yüksek8,7 | — | %0,3 | 13 Eyl 2024 |
32İzleyin | CVE-2024-24947İstismar yok | A heap-based buffer overflow vulnerability exists in the Programming Software Connection CurrDir functionality of AutomationDirect P3-550E 1automationdirect · p3-550e firmware · CWE-787 | Yüksek8,2 | — | %0,8 | 28 May 2024 |
32İzleyin | CVE-2024-24946İstismar yok | A heap-based buffer overflow vulnerability exists in the Programming Software Connection CurrDir functionality of AutomationDirect P3-550E 1automationdirect · p3-550e firmware · CWE-787 | Yüksek8,2 | — | %0,8 | 28 May 2024 |
32İzleyin | CVE-2024-24958İstismar yok | Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of AutomationDirect P3automationdirect · p3-550e firmware · CWE-787 | Yüksek8,2 | — | %0,5 | 28 May 2024 |
32İzleyin | CVE-2024-24959İstismar yok | Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of AutomationDirect P3automationdirect · p3-550e firmware · CWE-787 | Yüksek8,2 | — | %0,5 | 28 May 2024 |
32İzleyin | CVE-2024-24956İstismar yok | Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of AutomationDirect P3automationdirect · p3-550e firmware · CWE-787 | Yüksek8,2 | — | %0,5 | 28 May 2024 |
32İzleyin | CVE-2024-24954İstismar yok | Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of AutomationDirect P3automationdirect · p3-550e firmware · CWE-787 | Yüksek8,2 | — | %0,5 | 28 May 2024 |
32İzleyin | CVE-2024-24955İstismar yok | Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of AutomationDirect P3automationdirect · p3-550e firmware · CWE-787 | Yüksek8,2 | — | %0,5 | 28 May 2024 |
32İzleyin | CVE-2024-24957İstismar yok | Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of AutomationDirect P3automationdirect · p3-550e firmware · CWE-787 | Yüksek8,2 | — | %0,5 | 28 May 2024 |
31İzleyin | CVE-2020-10922İstismar yok | This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of C-MORE HMI EA9 Firmware versautomationdirect · c-more hmi ea9 firmware · CWE-20 | Yüksek7,5 | — | %3,7 | 23 Tem 2020 |
31İzleyin | CVE-2020-10918İstismar yok | This vulnerability allows remote attackers to bypass authentication on affected installations of C-MORE HMI EA9 Firmware version 6.52 touch automationdirect · c-more hmi ea9 firmware · CWE-287 | Yüksek7,5 | — | %2,7 | 23 Tem 2020 |
31İzleyin | CVE-2017-14020İstismar yok | In AutomationDirect CLICK Programming Software (Part Number C0-PGMSW) Versions 2.10 and prior; C-More Programming Software (Part Number EA9-automationdirect · click plc firmware · CWE-427 | Yüksek7,8 | — | %1,1 | 13 Kas 2017 |
- CVE-2020-1092040Planlayın
This vulnerability allows remote attackers to execute arbitrary code on affected installations of C-MORE HMI EA9 Firmware version 6.52 touch
KritikCVSS 9,8İstismar yokEPSS %5automationdirect · c-more hmi ea9 firmware23 Tem 2020
- CVE-2020-1092140Planlayın
This vulnerability allows remote attackers to issue commands on affected installations of C-MORE HMI EA9 Firmware version 6.52 touch screen
KritikCVSS 9,8İstismar yokEPSS %3automationdirect · c-more hmi ea9 firmware23 Tem 2020
- CVE-2020-696940Planlayın
It is possible to unmask credentials and other sensitive information on “unprotected” project files, which may allow an attacker to remotely
KritikCVSS 9,8İstismar yokEPSS %2automationdirect · c-more ea9-rhi firmware5 Şub 2020
- CVE-2024-2178539İzleyin
A leftover debug code vulnerability exists in the Telnet Diagnostic Interface functionality of AutomationDirect P3-550E 1.2.10.9.
KritikCVSS 9,8İstismar yokEPSS %2automationdirect · p3-550e firmware28 May 2024
- CVE-2024-2496339İzleyin
A stack-based buffer overflow vulnerability exists in the Programming Software Connection FileSelect functionality of AutomationDirect P3-55
KritikCVSS 9,8İstismar yokEPSS %1automationdirect · p3-550e firmware28 May 2024
- CVE-2024-2496239İzleyin
A stack-based buffer overflow vulnerability exists in the Programming Software Connection FileSelect functionality of AutomationDirect P3-55
KritikCVSS 9,8İstismar yokEPSS %1automationdirect · p3-550e firmware28 May 2024
- CVE-2021-3298439İzleyin
Automation Direct CLICK PLC CPU Modules Authentication Bypass Using an Alternate Path or Channel
KritikCVSS 9,8İstismar yokEPSS %1automationdirect · c0-10dd1e-d firmware4 Nis 2022
- CVE-2021-3298039İzleyin
Automation Direct CLICK PLC CPU Modules Authentication Bypass Using an Alternate Path or Channel
KritikCVSS 9,8İstismar yokEPSS %1automationdirect · c0-10dd1e-d firmware4 Nis 2022
- CVE-2021-3298639İzleyin
Automation Direct CLICK PLC CPU Modules Authentication Bypass Using an Alternate Path or Channel
KritikCVSS 9,8İstismar yokEPSS %1automationdirect · c0-10dd1e-d firmware4 Nis 2022
- CVE-2024-2360139İzleyin
A code injection vulnerability exists in the scan_lib.bin functionality of AutomationDirect P3-550E 1.2.10.9.
KritikCVSS 9,8İstismar yokEPSS %1automationdirect · p3-550e firmware28 May 2024
- CVE-2024-2218736İzleyin
A write-what-where vulnerability exists in the Programming Software Connection Remote Memory Diagnostics functionality of AutomationDirect P
KritikCVSS 9,1İstismar yokEPSS %1automationdirect · p3-550e firmware28 May 2024
- CVE-2022-200336İzleyin
AutomationDirect DirectLOGIC with Serial Communication Cleartext Transmission
KritikCVSS 9,1İstismar yokEPSS %1automationdirect · d0-06dd1 firmware31 Ağu 2022
- CVE-2024-4536834İzleyin
AutomationDirect DirectLogic H2-DM1E Session Fixation
YüksekCVSS 8,7İstismar yokEPSS %0automationdirect · directlogic h2-dm1e13 Eyl 2024
- CVE-2024-4309934İzleyin
AutomationDirect DirectLogic H2-DM1E Authentication Bypass by Capture-replay
YüksekCVSS 8,7İstismar yokEPSS %0automationdirect · directlogic h2-dm1e13 Eyl 2024
- CVE-2024-2494732İzleyin
A heap-based buffer overflow vulnerability exists in the Programming Software Connection CurrDir functionality of AutomationDirect P3-550E 1
YüksekCVSS 8,2İstismar yokEPSS %1automationdirect · p3-550e firmware28 May 2024
- CVE-2024-2494632İzleyin
A heap-based buffer overflow vulnerability exists in the Programming Software Connection CurrDir functionality of AutomationDirect P3-550E 1
YüksekCVSS 8,2İstismar yokEPSS %1automationdirect · p3-550e firmware28 May 2024
- CVE-2024-2495832İzleyin
Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of AutomationDirect P3
YüksekCVSS 8,2İstismar yokEPSS %1automationdirect · p3-550e firmware28 May 2024
- CVE-2024-2495932İzleyin
Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of AutomationDirect P3
YüksekCVSS 8,2İstismar yokEPSS %1automationdirect · p3-550e firmware28 May 2024
- CVE-2024-2495632İzleyin
Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of AutomationDirect P3
YüksekCVSS 8,2İstismar yokEPSS %1automationdirect · p3-550e firmware28 May 2024
- CVE-2024-2495432İzleyin
Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of AutomationDirect P3
YüksekCVSS 8,2İstismar yokEPSS %1automationdirect · p3-550e firmware28 May 2024
- CVE-2024-2495532İzleyin
Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of AutomationDirect P3
YüksekCVSS 8,2İstismar yokEPSS %0automationdirect · p3-550e firmware28 May 2024
- CVE-2024-2495732İzleyin
Several out-of-bounds write vulnerabilities exist in the Programming Software Connection FileSystem API functionality of AutomationDirect P3
YüksekCVSS 8,2İstismar yokEPSS %0automationdirect · p3-550e firmware28 May 2024
- CVE-2020-1092231İzleyin
This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of C-MORE HMI EA9 Firmware vers
YüksekCVSS 7,5İstismar yokEPSS %4automationdirect · c-more hmi ea9 firmware23 Tem 2020
- CVE-2020-1091831İzleyin
This vulnerability allows remote attackers to bypass authentication on affected installations of C-MORE HMI EA9 Firmware version 6.52 touch
YüksekCVSS 7,5İstismar yokEPSS %3automationdirect · c-more hmi ea9 firmware23 Tem 2020
- CVE-2017-1402031İzleyin
In AutomationDirect CLICK Programming Software (Part Number C0-PGMSW) Versions 2.10 and prior; C-More Programming Software (Part Number EA9-
YüksekCVSS 7,8İstismar yokEPSS %1automationdirect · click plc firmware13 Kas 2017