LCDS kayıtları
lcds üreticisine ait 23 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 5
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-787 Out-of-bounds Write3
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')3
- CWE-125 Out-of-bounds Read3
- CWE-822 Untrusted Pointer Dereference2
- CWE-74 Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')2
- CWE-288 Authentication Bypass Using an Alternate Path or Channel1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
23 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2018-17893İstismar yok | LAquis SCADA Versions 4.1.0.3870 and prior has an untrusted pointer dereference vulnerability, which may allow remote code execution.lcds · laquis scada · CWE-822 | Kritik9,8 | — | %6,4 | 16 Eki 2018 |
41Planlayın | CVE-2018-17897İstismar yok | LAquis SCADA Versions 4.1.0.3870 and prior has several integer overflow to buffer overflow vulnerabilities, which may allow remote code execlcds · laquis scada · CWE-190 | Kritik9,8 | — | %6,0 | 16 Eki 2018 |
40Planlayın | CVE-2018-17895İstismar yok | LAquis SCADA Versions 4.1.0.3870 and prior has several out-of-bounds read vulnerabilities, which may allow remote code execution.lcds · laquis scada · CWE-125 | Kritik9,8 | — | %4,8 | 16 Eki 2018 |
40Planlayın | CVE-2018-18996İstismar yok | LCDS Laquis SCADA prior to version 4.1.0.4150 allows taking in user input without proper authorization or sanitation, which may allow an attlcds · laquis scada · CWE-74 | Kritik9,8 | — | %2,5 | 5 Şub 2019 |
40Planlayın | CVE-2018-18998İstismar yok | LCDS Laquis SCADA prior to version 4.1.0.4150 uses hard coded credentials, which may allow an attacker unauthorized access to the system witlcds · laquis scada · CWE-798 | Kritik9,8 | — | %2,4 | 5 Şub 2019 |
37İzleyin | CVE-2018-17899İstismar yok | LAquis SCADA Versions 4.1.0.3870 and prior has a path traversal vulnerability, which may allow remote code execution.lcds · laquis scada · CWE-22 | Yüksek8,8 | — | %8,1 | 16 Eki 2018 |
36İzleyin | CVE-2018-18988İstismar yok | LCDS Laquis SCADA prior to version 4.1.0.4150 allows execution of script code by opening a specially crafted report format file.lcds · laquis scada · CWE-125 | Yüksek8,8 | — | %2,6 | 1 Şub 2019 |
36İzleyin | CVE-2018-18992İstismar yok | LCDS Laquis SCADA prior to version 4.1.0.4150 allows taking in user input without proper sanitation, which may allow an attacker to execute lcds · laquis scada · CWE-74 | Yüksek8,8 | — | %2,0 | 5 Şub 2019 |
34İzleyin | CVE-2024-5040İstismar yok | LCDS LAquis SCADA Path Traversallcds · laquis scada · CWE-22 | Yüksek8,5 | — | %0,4 | 21 May 2024 |
33İzleyin | CVE-2018-18990İstismar yok | LCDS Laquis SCADA prior to version 4.1.0.4150 allows a user-supplied path in file operations prior to proper validation.lcds · laquis scada · CWE-23 | Orta5,3 | — | %39,5 | 5 Şub 2019 |
32İzleyin | CVE-2018-17911İstismar yok | LAquis SCADA Versions 4.1.0.3870 and prior has several stack-based buffer overflow vulnerabilities, which may allow remote code execution.lcds · laquis scada · CWE-121 | Yüksek7,8 | — | %3,2 | 16 Eki 2018 |
32İzleyin | CVE-2018-19029İstismar yok | LCDS Laquis SCADA prior to version 4.1.0.4150 allows an attacker using a specially crafted project file to supply a pointer for a controlledlcds · laquis scada · CWE-822 | Yüksek7,8 | — | %2,7 | 5 Şub 2019 |
32İzleyin | CVE-2018-18986İstismar yok | LCDS Laquis SCADA prior to version 4.1.0.4150 allows the opening of a specially crafted report format file that may cause an out of bounds rlcds · laquis scada · CWE-787 | Yüksek7,8 | — | %2,7 | 5 Şub 2019 |
32İzleyin | CVE-2018-19002İstismar yok | LCDS Laquis SCADA prior to version 4.1.0.4150 allows improper control of generation of code when opening a specially crafted project file, wlcds · laquis scada · CWE-94 | Yüksek7,8 | — | %2,7 | 5 Şub 2019 |
31İzleyin | CVE-2018-17901İstismar yok | LAquis SCADA Versions 4.1.0.3870 and prior, when processing project files the application fails to sanitize user input prior to performing wlcds · laquis scada · CWE-787 | Yüksek7,8 | — | %1,6 | 16 Eki 2018 |
31İzleyin | CVE-2019-6536İstismar yok | Opening a specially crafted LCDS LAquis SCADA before 4.3.1.71 ELS file may result in a write past the end of an allocated buffer, which may lcds · laquis scada · CWE-787 | Yüksek7,8 | — | %1,2 | 27 Mar 2019 |
31İzleyin | CVE-2020-10622İstismar yok | LCDS LAquis SCADA Versions 4.3.1 and prior.lcds · laquis scada · CWE-20 | Yüksek7,8 | — | %0,8 | 4 May 2020 |
31İzleyin | CVE-2018-5463İstismar yok | A structured exception handler overflow vulnerability in Leao Consultoria e Desenvolvimento de Sistemas (LCDS) LTDA ME LAquis SCADA 4.1.0.33lcds · laquis scada · CWE-703 | Yüksek7,8 | — | %0,4 | 9 Nis 2018 |
25İzleyin | CVE-2021-32989İstismar yok | LCDS LAquis SCADA - Cross-site Scriptinglcds · laquis scada · CWE-79 | Orta6,1 | — | %2,5 | 25 May 2022 |
24İzleyin | CVE-2018-19000İstismar yok | LCDS Laquis SCADA prior to version 4.1.0.4150 allows an authentication bypass, which may allow an attacker access to sensitive data.lcds · laquis scada · CWE-288 | Orta5,3 | — | %8,8 | 5 Şub 2019 |
24İzleyin | CVE-2017-6020Kavram kanıtı | Leao Consultoria e Desenvolvimento de Sistemas (LCDS) LTDA ME LAquis SCADA software versions prior to version 4.1.0.3237 do not neutralize elcds · laquis scada · CWE-22 | Orta5,3 | — | %8,5 | 17 Nis 2018 |
22İzleyin | CVE-2020-10618İstismar yok | LCDS LAquis SCADA Versions 4.3.1 and prior.lcds · laquis scada · CWE-200 | Orta5,5 | — | %0,8 | 4 May 2020 |
14İzleyin | CVE-2018-19004İstismar yok | LCDS Laquis SCADA prior to version 4.1.0.4150 allows out of bounds read when opening a specially crafted project file, which may allow data lcds · laquis scada · CWE-125 | Düşük3,3 | — | %3,7 | 1 Şub 2019 |
- CVE-2018-1789341Planlayın
LAquis SCADA Versions 4.1.0.3870 and prior has an untrusted pointer dereference vulnerability, which may allow remote code execution.
KritikCVSS 9,8İstismar yokEPSS %6lcds · laquis scada16 Eki 2018
- CVE-2018-1789741Planlayın
LAquis SCADA Versions 4.1.0.3870 and prior has several integer overflow to buffer overflow vulnerabilities, which may allow remote code exec
KritikCVSS 9,8İstismar yokEPSS %6lcds · laquis scada16 Eki 2018
- CVE-2018-1789540Planlayın
LAquis SCADA Versions 4.1.0.3870 and prior has several out-of-bounds read vulnerabilities, which may allow remote code execution.
KritikCVSS 9,8İstismar yokEPSS %5lcds · laquis scada16 Eki 2018
- CVE-2018-1899640Planlayın
LCDS Laquis SCADA prior to version 4.1.0.4150 allows taking in user input without proper authorization or sanitation, which may allow an att
KritikCVSS 9,8İstismar yokEPSS %2lcds · laquis scada5 Şub 2019
- CVE-2018-1899840Planlayın
LCDS Laquis SCADA prior to version 4.1.0.4150 uses hard coded credentials, which may allow an attacker unauthorized access to the system wit
KritikCVSS 9,8İstismar yokEPSS %2lcds · laquis scada5 Şub 2019
- CVE-2018-1789937İzleyin
LAquis SCADA Versions 4.1.0.3870 and prior has a path traversal vulnerability, which may allow remote code execution.
YüksekCVSS 8,8İstismar yokEPSS %8lcds · laquis scada16 Eki 2018
- CVE-2018-1898836İzleyin
LCDS Laquis SCADA prior to version 4.1.0.4150 allows execution of script code by opening a specially crafted report format file.
YüksekCVSS 8,8İstismar yokEPSS %3lcds · laquis scada1 Şub 2019
- CVE-2018-1899236İzleyin
LCDS Laquis SCADA prior to version 4.1.0.4150 allows taking in user input without proper sanitation, which may allow an attacker to execute
YüksekCVSS 8,8İstismar yokEPSS %2lcds · laquis scada5 Şub 2019
- CVE-2024-504034İzleyin
LCDS LAquis SCADA Path Traversal
YüksekCVSS 8,5İstismar yokEPSS %0lcds · laquis scada21 May 2024
- CVE-2018-1899033İzleyin
LCDS Laquis SCADA prior to version 4.1.0.4150 allows a user-supplied path in file operations prior to proper validation.
OrtaCVSS 5,3İstismar yokEPSS %39lcds · laquis scada5 Şub 2019
- CVE-2018-1791132İzleyin
LAquis SCADA Versions 4.1.0.3870 and prior has several stack-based buffer overflow vulnerabilities, which may allow remote code execution.
YüksekCVSS 7,8İstismar yokEPSS %3lcds · laquis scada16 Eki 2018
- CVE-2018-1902932İzleyin
LCDS Laquis SCADA prior to version 4.1.0.4150 allows an attacker using a specially crafted project file to supply a pointer for a controlled
YüksekCVSS 7,8İstismar yokEPSS %3lcds · laquis scada5 Şub 2019
- CVE-2018-1898632İzleyin
LCDS Laquis SCADA prior to version 4.1.0.4150 allows the opening of a specially crafted report format file that may cause an out of bounds r
YüksekCVSS 7,8İstismar yokEPSS %3lcds · laquis scada5 Şub 2019
- CVE-2018-1900232İzleyin
LCDS Laquis SCADA prior to version 4.1.0.4150 allows improper control of generation of code when opening a specially crafted project file, w
YüksekCVSS 7,8İstismar yokEPSS %3lcds · laquis scada5 Şub 2019
- CVE-2018-1790131İzleyin
LAquis SCADA Versions 4.1.0.3870 and prior, when processing project files the application fails to sanitize user input prior to performing w
YüksekCVSS 7,8İstismar yokEPSS %2lcds · laquis scada16 Eki 2018
- CVE-2019-653631İzleyin
Opening a specially crafted LCDS LAquis SCADA before 4.3.1.71 ELS file may result in a write past the end of an allocated buffer, which may
YüksekCVSS 7,8İstismar yokEPSS %1lcds · laquis scada27 Mar 2019
- CVE-2020-1062231İzleyin
LCDS LAquis SCADA Versions 4.3.1 and prior.
YüksekCVSS 7,8İstismar yokEPSS %1lcds · laquis scada4 May 2020
- CVE-2018-546331İzleyin
A structured exception handler overflow vulnerability in Leao Consultoria e Desenvolvimento de Sistemas (LCDS) LTDA ME LAquis SCADA 4.1.0.33
YüksekCVSS 7,8İstismar yokEPSS %0lcds · laquis scada9 Nis 2018
- CVE-2021-3298925İzleyin
LCDS LAquis SCADA - Cross-site Scripting
OrtaCVSS 6,1İstismar yokEPSS %2lcds · laquis scada25 May 2022
- CVE-2018-1900024İzleyin
LCDS Laquis SCADA prior to version 4.1.0.4150 allows an authentication bypass, which may allow an attacker access to sensitive data.
OrtaCVSS 5,3İstismar yokEPSS %9lcds · laquis scada5 Şub 2019
- CVE-2017-602024İzleyin
Leao Consultoria e Desenvolvimento de Sistemas (LCDS) LTDA ME LAquis SCADA software versions prior to version 4.1.0.3237 do not neutralize e
OrtaCVSS 5,3Kavram kanıtıEPSS %8lcds · laquis scada17 Nis 2018
- CVE-2020-1061822İzleyin
LCDS LAquis SCADA Versions 4.3.1 and prior.
OrtaCVSS 5,5İstismar yokEPSS %1lcds · laquis scada4 May 2020
- CVE-2018-1900414İzleyin
LCDS Laquis SCADA prior to version 4.1.0.4150 allows out of bounds read when opening a specially crafted project file, which may allow data
DüşükCVSS 3,3İstismar yokEPSS %4lcds · laquis scada1 Şub 2019