rockwellautomation kayıtları
rockwellautomation üreticisine ait 359 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 9 · %2,5
- Silahlaştırılmış
- 17 · %4,7
- Pre-auth RCE
- 39
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- 1436 gün
Tekrar eden sınıflar
- CWE-20 Improper Input Validation50
- CWE-400 Uncontrolled Resource Consumption21
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer18
- CWE-787 Out-of-bounds Write17
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')16
- CWE-287 Improper Authentication15
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
359 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
100Hemen | CVE-2023-20198Silahlaştırılmış | Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS XE Software.cisco · ios xe · CWE-420 | Kritik10,0 | KEV | %99,6 | 16 Eki 2023 |
88Hemen | CVE-2021-22681Silahlaştırılmış | Rockwell Automation Studio 5000 Logix Designer Versions 21 and later, and RSLogix 5000 Versions 16 through 20 use a key to verify Logix controckwellautomation · factorytalk services platform · CWE-522 | Kritik9,8 | KEV | %63,6 | 3 Mar 2021 |
66Bu hafta | CVE-2018-0172Silahlaştırılmış | A vulnerability in the DHCP option 82 encapsulation functionality of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticcisco · ios · CWE-20 | Yüksek8,6 | KEV | %7,8 | 28 Mar 2018 |
66Bu hafta | CVE-2018-0155Silahlaştırılmış | A vulnerability in the Bidirectional Forwarding Detection (BFD) offload implementation of Cisco Catalyst 4500 Series Switches and Cisco Catacisco · ios · CWE-388 | Yüksek8,6 | KEV | %7,7 | 28 Mar 2018 |
66Bu hafta | CVE-2018-0173Silahlaştırılmış | A vulnerability in the Cisco IOS Software and Cisco IOS XE Software function that restores encapsulated option 82 information in DHCP Versiocisco · ios · CWE-20 | Yüksek8,6 | KEV | %7,6 | 28 Mar 2018 |
66Bu hafta | CVE-2018-0174Silahlaştırılmış | A vulnerability in the DHCP option 82 encapsulation functionality of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticcisco · ios · CWE-20 | Yüksek8,6 | KEV | %7,6 | 28 Mar 2018 |
66Bu hafta | CVE-2018-0158Silahlaştırılmış | A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS Software and Cisco IOS XE Software could allow an unauthecisco · ios · CWE-20 | Yüksek8,6 | KEV | %7,2 | 28 Mar 2018 |
66Bu hafta | CVE-2018-0167Silahlaştırılmış | Multiple Buffer Overflow vulnerabilities in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software,cisco · ios · CWE-119 | Yüksek8,8 | KEV | %3,4 | 28 Mar 2018 |
63Bu hafta | CVE-2018-0175Silahlaştırılmış | Format String vulnerability in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOcisco · ios · CWE-119 | Yüksek8,0 | KEV | %3,5 | 28 Mar 2018 |
61Bu hafta | CVE-2023-2915Silahlaştırılmış | Rockwell Automation ThinManager Thinserver Software Vulnerable to Input Validation Vulnerabilityrockwellautomation · thinmanager thinserver · CWE-20 | Kritik9,1 | — | %81,8 | 17 Ağu 2023 |
61Bu hafta | CVE-2023-2917Silahlaştırılmış | Rockwell Automation ThinManager Thinserver Software Vulnerable to Input Validation Vulnerabilityrockwellautomation · thinmanager thinserver · CWE-20 | Kritik9,8 | — | %72,2 | 17 Ağu 2023 |
59Planlayın | CVE-2019-6553İstismar yok | A vulnerability was found in Rockwell Automation RSLinx Classic versions 4.10.00 and prior.rockwellautomation · rslinx · CWE-121 | Kritik9,8 | — | %66,1 | 4 Nis 2019 |
53Planlayın | CVE-2023-27856Silahlaştırılmış | Rockwell Automation ThinManager ThinServer Path Traversal Downloadrockwellautomation · thinmanager · CWE-22 | Yüksek7,5 | — | %77,2 | 21 Mar 2023 |
53Planlayın | CVE-2010-2965İstismar yok | The WDB target agent debug service in Wind River VxWorks 6.x, 5.x, and earlier, as used on the Rockwell Automation 1756-ENBT series A with frockwellautomation · 1756-enbt\/a firmware · CWE-863 | Kritik9,8 | — | %47,4 | 5 Ağu 2010 |
51Planlayın | CVE-2017-14463İstismar yok | An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microlrockwellautomation · micrologix 1400 b firmware | Kritik9,8 | — | %38,9 | 5 Nis 2018 |
50Planlayın | CVE-2017-14468İstismar yok | An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microlrockwellautomation · micrologix 1400 b firmware | Kritik9,8 | — | %38,0 | 5 Nis 2018 |
50Planlayın | CVE-2017-14473İstismar yok | An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microlrockwellautomation · micrologix 1400 b firmware | Kritik9,8 | — | %38,0 | 5 Nis 2018 |
50Planlayın | CVE-2017-14466İstismar yok | An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microlrockwellautomation · micrologix 1400 b firmware | Kritik9,8 | — | %38,0 | 5 Nis 2018 |
50Planlayın | CVE-2017-14464İstismar yok | An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microlrockwellautomation · micrologix 1400 b firmware | Kritik9,8 | — | %38,0 | 5 Nis 2018 |
50Planlayın | CVE-2017-14471İstismar yok | An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microlrockwellautomation · micrologix 1400 b firmware | Kritik9,8 | — | %38,0 | 5 Nis 2018 |
50Planlayın | CVE-2017-14472İstismar yok | An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microlrockwellautomation · micrologix 1400 b firmware | Kritik9,8 | — | %38,0 | 5 Nis 2018 |
50Planlayın | CVE-2017-14470İstismar yok | An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microlrockwellautomation · micrologix 1400 b firmware | Kritik9,8 | — | %38,0 | 5 Nis 2018 |
50Planlayın | CVE-2017-14469İstismar yok | An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microlrockwellautomation · micrologix 1400 b firmware | Kritik9,8 | — | %38,0 | 5 Nis 2018 |
50Planlayın | CVE-2017-14467İstismar yok | An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microlrockwellautomation · micrologix 1400 b firmware | Kritik9,8 | — | %37,3 | 5 Nis 2018 |
50Planlayın | CVE-2017-14465İstismar yok | An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microlrockwellautomation · micrologix 1400 b firmware | Kritik9,8 | — | %35,2 | 5 Nis 2018 |
- CVE-2023-20198100Hemen
Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS XE Software.
KritikCVSS 10,0KEVSilahlaştırılmışEPSS %100cisco · ios xe16 Eki 2023
- CVE-2021-2268188Hemen
Rockwell Automation Studio 5000 Logix Designer Versions 21 and later, and RSLogix 5000 Versions 16 through 20 use a key to verify Logix cont
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %64rockwellautomation · factorytalk services platform3 Mar 2021
- CVE-2018-017266Bu hafta
A vulnerability in the DHCP option 82 encapsulation functionality of Cisco IOS Software and Cisco IOS XE Software could allow an unauthentic
YüksekCVSS 8,6KEVSilahlaştırılmışEPSS %8cisco · ios28 Mar 2018
- CVE-2018-015566Bu hafta
A vulnerability in the Bidirectional Forwarding Detection (BFD) offload implementation of Cisco Catalyst 4500 Series Switches and Cisco Cata
YüksekCVSS 8,6KEVSilahlaştırılmışEPSS %8cisco · ios28 Mar 2018
- CVE-2018-017366Bu hafta
A vulnerability in the Cisco IOS Software and Cisco IOS XE Software function that restores encapsulated option 82 information in DHCP Versio
YüksekCVSS 8,6KEVSilahlaştırılmışEPSS %8cisco · ios28 Mar 2018
- CVE-2018-017466Bu hafta
A vulnerability in the DHCP option 82 encapsulation functionality of Cisco IOS Software and Cisco IOS XE Software could allow an unauthentic
YüksekCVSS 8,6KEVSilahlaştırılmışEPSS %8cisco · ios28 Mar 2018
- CVE-2018-015866Bu hafta
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS Software and Cisco IOS XE Software could allow an unauthe
YüksekCVSS 8,6KEVSilahlaştırılmışEPSS %7cisco · ios28 Mar 2018
- CVE-2018-016766Bu hafta
Multiple Buffer Overflow vulnerabilities in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software,
YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %3cisco · ios28 Mar 2018
- CVE-2018-017563Bu hafta
Format String vulnerability in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IO
YüksekCVSS 8,0KEVSilahlaştırılmışEPSS %3cisco · ios28 Mar 2018
- CVE-2023-291561Bu hafta
Rockwell Automation ThinManager Thinserver Software Vulnerable to Input Validation Vulnerability
KritikCVSS 9,1SilahlaştırılmışEPSS %82rockwellautomation · thinmanager thinserver17 Ağu 2023
- CVE-2023-291761Bu hafta
Rockwell Automation ThinManager Thinserver Software Vulnerable to Input Validation Vulnerability
KritikCVSS 9,8SilahlaştırılmışEPSS %72rockwellautomation · thinmanager thinserver17 Ağu 2023
- CVE-2019-655359Planlayın
A vulnerability was found in Rockwell Automation RSLinx Classic versions 4.10.00 and prior.
KritikCVSS 9,8İstismar yokEPSS %66rockwellautomation · rslinx4 Nis 2019
- CVE-2023-2785653Planlayın
Rockwell Automation ThinManager ThinServer Path Traversal Download
YüksekCVSS 7,5SilahlaştırılmışEPSS %77rockwellautomation · thinmanager21 Mar 2023
- CVE-2010-296553Planlayın
The WDB target agent debug service in Wind River VxWorks 6.x, 5.x, and earlier, as used on the Rockwell Automation 1756-ENBT series A with f
KritikCVSS 9,8İstismar yokEPSS %47rockwellautomation · 1756-enbt\/a firmware5 Ağu 2010
- CVE-2017-1446351Planlayın
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microl
KritikCVSS 9,8İstismar yokEPSS %39rockwellautomation · micrologix 1400 b firmware5 Nis 2018
- CVE-2017-1446850Planlayın
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microl
KritikCVSS 9,8İstismar yokEPSS %38rockwellautomation · micrologix 1400 b firmware5 Nis 2018
- CVE-2017-1447350Planlayın
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microl
KritikCVSS 9,8İstismar yokEPSS %38rockwellautomation · micrologix 1400 b firmware5 Nis 2018
- CVE-2017-1446650Planlayın
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microl
KritikCVSS 9,8İstismar yokEPSS %38rockwellautomation · micrologix 1400 b firmware5 Nis 2018
- CVE-2017-1446450Planlayın
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microl
KritikCVSS 9,8İstismar yokEPSS %38rockwellautomation · micrologix 1400 b firmware5 Nis 2018
- CVE-2017-1447150Planlayın
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microl
KritikCVSS 9,8İstismar yokEPSS %38rockwellautomation · micrologix 1400 b firmware5 Nis 2018
- CVE-2017-1447250Planlayın
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microl
KritikCVSS 9,8İstismar yokEPSS %38rockwellautomation · micrologix 1400 b firmware5 Nis 2018
- CVE-2017-1447050Planlayın
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microl
KritikCVSS 9,8İstismar yokEPSS %38rockwellautomation · micrologix 1400 b firmware5 Nis 2018
- CVE-2017-1446950Planlayın
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microl
KritikCVSS 9,8İstismar yokEPSS %38rockwellautomation · micrologix 1400 b firmware5 Nis 2018
- CVE-2017-1446750Planlayın
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microl
KritikCVSS 9,8İstismar yokEPSS %37rockwellautomation · micrologix 1400 b firmware5 Nis 2018
- CVE-2017-1446550Planlayın
An exploitable access control vulnerability exists in the data, program, and function file permissions functionality of Allen Bradley Microl
KritikCVSS 9,8İstismar yokEPSS %35rockwellautomation · micrologix 1400 b firmware5 Nis 2018