openautomationsoftware kayıtları
openautomationsoftware üreticisine ait 21 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-306 Missing Authentication for Critical Function7
- CWE-73 External Control of File Name or Path3
- CWE-319 Cleartext Transmission of Sensitive Information2
- CWE-20 Improper Input Validation2
- CWE-284 Improper Access Control1
- CWE-330 Use of Insufficiently Random Values1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
21 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
48Planlayın | CVE-2022-26833Kavram kanıtı | An improper authentication vulnerability exists in the REST API functionality of Open Automation Software OAS Platform V16.00.0121.openautomationsoftware · oas platform · CWE-306 | Kritik9,4 | — | %37,6 | 25 May 2022 |
45Planlayın | CVE-2022-26082İstismar yok | A file write vulnerability exists in the OAS Engine SecureTransferFiles functionality of Open Automation Software OAS Platform V16.00.0112.openautomationsoftware · oas platform · CWE-306 | Kritik9,8 | — | %20,1 | 25 May 2022 |
40Planlayın | CVE-2023-31242İstismar yok | An authentication bypass vulnerability exists in the OAS Engine functionality of Open Automation Software OAS Platform v18.00.0072.openautomationsoftware · oas platform · CWE-284 | Kritik9,8 | — | %3,5 | 5 Eyl 2023 |
34İzleyin | CVE-2024-11220İstismar yok | Open Automation Software Incorrect Execution-Assigned Permissionsopenautomationsoftware · open automation software · CWE-279 | Yüksek8,5 | — | %0,2 | 6 Ara 2024 |
32İzleyin | CVE-2023-34998İstismar yok | An authentication bypass vulnerability exists in the OAS Engine functionality of Open Automation Software OAS Platform v18.00.0072.openautomationsoftware · oas platform · CWE-319 | Yüksek8,1 | — | %1,2 | 5 Eyl 2023 |
32İzleyin | CVE-2023-32615İstismar yok | A file write vulnerability exists in the OAS Engine configuration functionality of Open Automation Software OAS Platform v18.00.0072.openautomationsoftware · oas platform · CWE-73 | Yüksek8,1 | — | %0,8 | 5 Eyl 2023 |
31İzleyin | CVE-2022-27169İstismar yok | An information disclosure vulnerability exists in the OAS Engine SecureBrowseFile functionality of Open Automation Software OAS Platform V16openautomationsoftware · oas platform · CWE-306 | Yüksek7,5 | — | %1,7 | 25 May 2022 |
30İzleyin | CVE-2022-26067İstismar yok | An information disclosure vulnerability exists in the OAS Engine SecureTransferFiles functionality of Open Automation Software OAS Platform openautomationsoftware · oas platform · CWE-306 | Yüksek7,5 | — | %1,3 | 25 May 2022 |
30İzleyin | CVE-2022-26303İstismar yok | An external config control vulnerability exists in the OAS Engine SecureAddUser functionality of Open Automation Software OAS Platform V16.0openautomationsoftware · oas platform · CWE-306 | Yüksek7,5 | — | %1,3 | 25 May 2022 |
30İzleyin | CVE-2022-26043İstismar yok | An external config control vulnerability exists in the OAS Engine SecureAddSecurity functionality of Open Automation Software OAS Platform Vopenautomationsoftware · oas platform · CWE-306 | Yüksek7,5 | — | %1,3 | 25 May 2022 |
30İzleyin | CVE-2023-34353İstismar yok | An authentication bypass vulnerability exists in the OAS Engine authentication functionality of Open Automation Software OAS Platform v18.00openautomationsoftware · oas platform · CWE-330 | Yüksek7,5 | — | %1,2 | 5 Eyl 2023 |
30İzleyin | CVE-2022-26026İstismar yok | A denial of service vulnerability exists in the OAS Engine SecureConfigValues functionality of Open Automation Software OAS Platform V16.00.openautomationsoftware · oas platform · CWE-306 | Yüksek7,5 | — | %1,2 | 25 May 2022 |
30İzleyin | CVE-2022-26077İstismar yok | A cleartext transmission of sensitive information vulnerability exists in the OAS Engine configuration communications functionality of Open openautomationsoftware · oas platform · CWE-319 | Yüksek7,5 | — | %1,1 | 25 May 2022 |
26İzleyin | CVE-2023-32271İstismar yok | An information disclosure vulnerability exists in the OAS Engine configuration management functionality of Open Automation Software OAS Platopenautomationsoftware · oas platform · CWE-200 | Orta6,5 | — | %1,0 | 5 Eyl 2023 |
26İzleyin | CVE-2023-34317İstismar yok | An improper input validation vulnerability exists in the OAS Engine User Creation functionality of Open Automation Software OAS Platform v18openautomationsoftware · oas platform · CWE-20 | Orta6,5 | — | %0,9 | 5 Eyl 2023 |
19İzleyin | CVE-2024-24976İstismar yok | A denial of service vulnerability exists in the OAS Engine File Data Source Configuration functionality of Open Automation Software OAS Platopenautomationsoftware · open automation software · CWE-130 | Orta4,9 | — | %0,9 | 3 Nis 2024 |
19İzleyin | CVE-2024-21870İstismar yok | A file write vulnerability exists in the OAS Engine Tags Configuration functionality of Open Automation Software OAS Platform V19.00.0057.openautomationsoftware · open automation software · CWE-73 | Orta4,9 | — | %0,7 | 3 Nis 2024 |
19İzleyin | CVE-2024-22178İstismar yok | A file write vulnerability exists in the OAS Engine Save Security Configuration functionality of Open Automation Software OAS Platform V19.0openautomationsoftware · open automation software · CWE-73 | Orta4,9 | — | %0,7 | 3 Nis 2024 |
19İzleyin | CVE-2024-27201İstismar yok | An improper input validation vulnerability exists in the OAS Engine User Configuration functionality of Open Automation Software OAS Platforopenautomationsoftware · open automation software · CWE-20 | Orta4,9 | — | %0,7 | 3 Nis 2024 |
17İzleyin | CVE-2023-34994İstismar yok | An improper resource allocation vulnerability exists in the OAS Engine configuration management functionality of Open Automation Software OAopenautomationsoftware · oas platform · CWE-770 | Orta4,3 | — | %0,8 | 5 Eyl 2023 |
17İzleyin | CVE-2023-35124İstismar yok | An information disclosure vulnerability exists in the OAS Engine configuration management functionality of Open Automation Software OAS Platopenautomationsoftware · oas platform · CWE-209 | Orta4,3 | — | %0,6 | 5 Eyl 2023 |
- CVE-2022-2683348Planlayın
An improper authentication vulnerability exists in the REST API functionality of Open Automation Software OAS Platform V16.00.0121.
KritikCVSS 9,4Kavram kanıtıEPSS %38openautomationsoftware · oas platform25 May 2022
- CVE-2022-2608245Planlayın
A file write vulnerability exists in the OAS Engine SecureTransferFiles functionality of Open Automation Software OAS Platform V16.00.0112.
KritikCVSS 9,8İstismar yokEPSS %20openautomationsoftware · oas platform25 May 2022
- CVE-2023-3124240Planlayın
An authentication bypass vulnerability exists in the OAS Engine functionality of Open Automation Software OAS Platform v18.00.0072.
KritikCVSS 9,8İstismar yokEPSS %3openautomationsoftware · oas platform5 Eyl 2023
- CVE-2024-1122034İzleyin
Open Automation Software Incorrect Execution-Assigned Permissions
YüksekCVSS 8,5İstismar yokEPSS %0openautomationsoftware · open automation software6 Ara 2024
- CVE-2023-3499832İzleyin
An authentication bypass vulnerability exists in the OAS Engine functionality of Open Automation Software OAS Platform v18.00.0072.
YüksekCVSS 8,1İstismar yokEPSS %1openautomationsoftware · oas platform5 Eyl 2023
- CVE-2023-3261532İzleyin
A file write vulnerability exists in the OAS Engine configuration functionality of Open Automation Software OAS Platform v18.00.0072.
YüksekCVSS 8,1İstismar yokEPSS %1openautomationsoftware · oas platform5 Eyl 2023
- CVE-2022-2716931İzleyin
An information disclosure vulnerability exists in the OAS Engine SecureBrowseFile functionality of Open Automation Software OAS Platform V16
YüksekCVSS 7,5İstismar yokEPSS %2openautomationsoftware · oas platform25 May 2022
- CVE-2022-2606730İzleyin
An information disclosure vulnerability exists in the OAS Engine SecureTransferFiles functionality of Open Automation Software OAS Platform
YüksekCVSS 7,5İstismar yokEPSS %1openautomationsoftware · oas platform25 May 2022
- CVE-2022-2630330İzleyin
An external config control vulnerability exists in the OAS Engine SecureAddUser functionality of Open Automation Software OAS Platform V16.0
YüksekCVSS 7,5İstismar yokEPSS %1openautomationsoftware · oas platform25 May 2022
- CVE-2022-2604330İzleyin
An external config control vulnerability exists in the OAS Engine SecureAddSecurity functionality of Open Automation Software OAS Platform V
YüksekCVSS 7,5İstismar yokEPSS %1openautomationsoftware · oas platform25 May 2022
- CVE-2023-3435330İzleyin
An authentication bypass vulnerability exists in the OAS Engine authentication functionality of Open Automation Software OAS Platform v18.00
YüksekCVSS 7,5İstismar yokEPSS %1openautomationsoftware · oas platform5 Eyl 2023
- CVE-2022-2602630İzleyin
A denial of service vulnerability exists in the OAS Engine SecureConfigValues functionality of Open Automation Software OAS Platform V16.00.
YüksekCVSS 7,5İstismar yokEPSS %1openautomationsoftware · oas platform25 May 2022
- CVE-2022-2607730İzleyin
A cleartext transmission of sensitive information vulnerability exists in the OAS Engine configuration communications functionality of Open
YüksekCVSS 7,5İstismar yokEPSS %1openautomationsoftware · oas platform25 May 2022
- CVE-2023-3227126İzleyin
An information disclosure vulnerability exists in the OAS Engine configuration management functionality of Open Automation Software OAS Plat
OrtaCVSS 6,5İstismar yokEPSS %1openautomationsoftware · oas platform5 Eyl 2023
- CVE-2023-3431726İzleyin
An improper input validation vulnerability exists in the OAS Engine User Creation functionality of Open Automation Software OAS Platform v18
OrtaCVSS 6,5İstismar yokEPSS %1openautomationsoftware · oas platform5 Eyl 2023
- CVE-2024-2497619İzleyin
A denial of service vulnerability exists in the OAS Engine File Data Source Configuration functionality of Open Automation Software OAS Plat
OrtaCVSS 4,9İstismar yokEPSS %1openautomationsoftware · open automation software3 Nis 2024
- CVE-2024-2187019İzleyin
A file write vulnerability exists in the OAS Engine Tags Configuration functionality of Open Automation Software OAS Platform V19.00.0057.
OrtaCVSS 4,9İstismar yokEPSS %1openautomationsoftware · open automation software3 Nis 2024
- CVE-2024-2217819İzleyin
A file write vulnerability exists in the OAS Engine Save Security Configuration functionality of Open Automation Software OAS Platform V19.0
OrtaCVSS 4,9İstismar yokEPSS %1openautomationsoftware · open automation software3 Nis 2024
- CVE-2024-2720119İzleyin
An improper input validation vulnerability exists in the OAS Engine User Configuration functionality of Open Automation Software OAS Platfor
OrtaCVSS 4,9İstismar yokEPSS %1openautomationsoftware · open automation software3 Nis 2024
- CVE-2023-3499417İzleyin
An improper resource allocation vulnerability exists in the OAS Engine configuration management functionality of Open Automation Software OA
OrtaCVSS 4,3İstismar yokEPSS %1openautomationsoftware · oas platform5 Eyl 2023
- CVE-2023-3512417İzleyin
An information disclosure vulnerability exists in the OAS Engine configuration management functionality of Open Automation Software OAS Plat
OrtaCVSS 4,3İstismar yokEPSS %1openautomationsoftware · oas platform5 Eyl 2023