Festo kayıtları
festo üreticisine ait 9 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 5
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')4
- CWE-287 Improper Authentication2
- CWE-1059 Insufficient Technical Documentation1
- CWE-269 Improper Privilege Management1
- CWE-916 Use of Password Hash With Insufficient Computational Effort1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
9 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2022-30309İstismar yok | FESTO: CECC-X-M1 and Servo Press Kit YJKP OS Command Injection vulnerabilityfesto · controller cecc-x-m1 firmware · CWE-78 | Kritik9,8 | — | %2,9 | 13 Haz 2022 |
40Planlayın | CVE-2022-30308İstismar yok | FESTO: CECC-X-M1 and Servo Press Kit YJKP OS Command Injection vulnerabilityfesto · controller cecc-x-m1 firmware · CWE-78 | Kritik9,8 | — | %2,9 | 13 Haz 2022 |
40Planlayın | CVE-2022-30311İstismar yok | FESTO: CECC-X-M1 and Servo Press Kit YJKP OS Command Injection vulnerabilityfesto · controller cecc-x-m1 firmware · CWE-78 | Kritik9,8 | — | %2,6 | 13 Haz 2022 |
40Planlayın | CVE-2022-30310İstismar yok | FESTO: CECC-X-M1 and Servo Press Kit YJKP OS Command Injection vulnerabilityfesto · controller cecc-x-m1 firmware · CWE-78 | Kritik9,8 | — | %2,6 | 13 Haz 2022 |
39İzleyin | CVE-2022-3270İstismar yok | Incomplete Documentation of remote functions in FESTO products.festo · bus module cpx-e-ep firmware · CWE-1059 | Kritik9,8 | — | %1,1 | 1 Ara 2022 |
38İzleyin | CVE-2014-0760İstismar yok | Festo CECX-X-(C1/M1) Controller Improper Authenticationfesto · cecx-x-c1 modular master controller · CWE-287 | Kritik9,3 | — | %3,3 | 25 Nis 2014 |
38İzleyin | CVE-2014-0769İstismar yok | Festo CECX-X-(C1/M1) Controller Improper Authenticationfesto · cecx-x-m1 modular controller · CWE-287 | Kritik9,3 | — | %2,3 | 25 Nis 2014 |
31İzleyin | CVE-2020-12069İstismar yok | CODESYS V3 prone to Inadequate Password Hashingcodesys · control for beaglebone · CWE-916 | Yüksek7,8 | — | %0,2 | 26 Ara 2022 |
30İzleyin | CVE-2022-3079İstismar yok | Festo: CPX-CEC-C1 and CMXX, Missing Authentication for Critical Webpage Functionfesto · cpx-cmxx firmware · CWE-269 | Yüksek7,5 | — | %0,8 | 20 Eyl 2022 |
- CVE-2022-3030940Planlayın
FESTO: CECC-X-M1 and Servo Press Kit YJKP OS Command Injection vulnerability
KritikCVSS 9,8İstismar yokEPSS %3festo · controller cecc-x-m1 firmware13 Haz 2022
- CVE-2022-3030840Planlayın
FESTO: CECC-X-M1 and Servo Press Kit YJKP OS Command Injection vulnerability
KritikCVSS 9,8İstismar yokEPSS %3festo · controller cecc-x-m1 firmware13 Haz 2022
- CVE-2022-3031140Planlayın
FESTO: CECC-X-M1 and Servo Press Kit YJKP OS Command Injection vulnerability
KritikCVSS 9,8İstismar yokEPSS %3festo · controller cecc-x-m1 firmware13 Haz 2022
- CVE-2022-3031040Planlayın
FESTO: CECC-X-M1 and Servo Press Kit YJKP OS Command Injection vulnerability
KritikCVSS 9,8İstismar yokEPSS %3festo · controller cecc-x-m1 firmware13 Haz 2022
- CVE-2022-327039İzleyin
Incomplete Documentation of remote functions in FESTO products.
KritikCVSS 9,8İstismar yokEPSS %1festo · bus module cpx-e-ep firmware1 Ara 2022
- CVE-2014-076038İzleyin
Festo CECX-X-(C1/M1) Controller Improper Authentication
KritikCVSS 9,3İstismar yokEPSS %3festo · cecx-x-c1 modular master controller25 Nis 2014
- CVE-2014-076938İzleyin
Festo CECX-X-(C1/M1) Controller Improper Authentication
KritikCVSS 9,3İstismar yokEPSS %2festo · cecx-x-m1 modular controller25 Nis 2014
- CVE-2020-1206931İzleyin
CODESYS V3 prone to Inadequate Password Hashing
YüksekCVSS 7,8İstismar yokEPSS %0codesys · control for beaglebone26 Ara 2022
- CVE-2022-307930İzleyin
Festo: CPX-CEC-C1 and CMXX, Missing Authentication for Critical Webpage Function
YüksekCVSS 7,5İstismar yokEPSS %1festo · cpx-cmxx firmware20 Eyl 2022