selinc kayıtları
selinc üreticisine ait 47 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')13
- CWE-20 Improper Input Validation9
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-829 Inclusion of Functionality from Untrusted Control Sphere2
- CWE-257 Storing Passwords in a Recoverable Format1
- CWE-264 Permissions, Privileges, and Access Controls1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
47 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2017-7928İstismar yok | An Improper Access Control issue was discovered in Schweitzer Engineering Laboratories (SEL) SEL-3620 and SEL-3622 Security Gateway Versionsselinc · sel-3620 firmware · CWE-284 | Kritik10,0 | — | %2,3 | 7 Ağu 2017 |
40Planlayın | CVE-2018-10600İstismar yok | SEL AcSELerator Architect version 2.2.24.0 and prior allows unsanitized input to be passed to the XML parser, which may allow disclosure andselinc · acselerator architect · CWE-611 | Kritik9,8 | — | %2,5 | 24 Tem 2018 |
39İzleyin | CVE-2023-31176İstismar yok | Insufficient entropy vulnerability could lead to authentication bypassselinc · sel-451 firmware · CWE-331 | Kritik9,8 | — | %0,9 | 30 Kas 2023 |
39İzleyin | CVE-2023-34388İstismar yok | Improper authentication could lead to session hijackingselinc · sel-451 firmware · CWE-287 | Kritik9,8 | — | %0,9 | 30 Kas 2023 |
39İzleyin | CVE-2023-31175İstismar yok | Execution with Unnecessary Privilegesselinc · sel-5037 sel grid configurator · CWE-250 | Kritik9,8 | — | %0,4 | 31 Ağu 2023 |
35İzleyin | CVE-2018-10604İstismar yok | SEL Compass version 3.0.5.1 and prior allows all users full access to the SEL Compass directory, which may allow modification or overwritingselinc · sel compass · CWE-276 | Yüksek8,8 | — | %1,6 | 24 Tem 2018 |
35İzleyin | CVE-2023-31149İstismar yok | Improper Input Validation in Web Interfaceselinc · sel-2241 rtac module firmware · CWE-20 | Yüksek8,8 | — | %1,1 | 10 May 2023 |
35İzleyin | CVE-2023-31148İstismar yok | Improper Input Validation in Web Interfaceselinc · sel-2241 rtac module firmware · CWE-20 | Yüksek8,8 | — | %1,1 | 10 May 2023 |
35İzleyin | CVE-2023-31161İstismar yok | Improper Input Validation in Web Interfaceselinc · sel-3350 firmware · CWE-20 | Yüksek8,8 | — | %0,5 | 10 May 2023 |
35İzleyin | CVE-2023-34392İstismar yok | Missing Authentication for Critical Functionselinc · sel-5037 sel grid configurator · CWE-306 | Yüksek8,8 | — | %0,5 | 31 Ağu 2023 |
35İzleyin | CVE-2023-31152İstismar yok | Authentication Bypass Using an Alternate Path or Channelselinc · sel-2241 rtac module firmware · CWE-288 | Yüksek8,8 | — | %0,4 | 10 May 2023 |
33İzleyin | CVE-2023-31173İstismar yok | Use of Hard-coded Credentialsselinc · sel-5037 sel grid configurator · CWE-798 | Yüksek8,4 | — | %0,2 | 31 Ağu 2023 |
32İzleyin | CVE-2018-10608Kavram kanıtı | SEL AcSELerator Architect version 2.2.24.0 and prior can be exploited when the AcSELerator Architect FTP client connects to a malicious FTP selinc · acselerator architect · CWE-400 | Yüksek7,5 | — | %7,8 | 24 Tem 2018 |
32İzleyin | CVE-2023-31167İstismar yok | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')selinc · sel-5036 acselerator bay screen builder · CWE-22 | Yüksek8,1 | — | %0,4 | 31 Ağu 2023 |
31İzleyin | CVE-2023-2264İstismar yok | Improper input validition could lead to code injectionselinc · sel-411l firmware · CWE-20 | Yüksek7,8 | — | %0,2 | 30 Kas 2023 |
29İzleyin | CVE-2013-2792İstismar yok | Schweitzer Engineering Laboratories (SEL) SEL-2241, SEL-3505, and SEL-3530 RTAC master devices allow remote attackers to cause a denial of sselinc · sel-2241 · CWE-20 | Yüksek7,1 | — | %1,9 | 9 Ağu 2013 |
29İzleyin | CVE-2023-31172İstismar yok | Incomplete Filtering of Special Elementsselinc · sel-5030 acselerator quickset · CWE-791 | Yüksek7,4 | — | %0,3 | 31 Ağu 2023 |
26İzleyin | CVE-2023-34389İstismar yok | Allocation of resources without limits could lead to denial of serviceselinc · sel-451 firmware · CWE-770 | Orta6,5 | — | %0,7 | 30 Kas 2023 |
26İzleyin | CVE-2023-34390İstismar yok | Improper input validation could lead to denial of serviceselinc · sel-451 firmware · CWE-20 | Orta6,5 | — | %0,7 | 30 Kas 2023 |
26İzleyin | CVE-2023-31150İstismar yok | Storing Passwords in a Recoverable Formatselinc · sel-2241 rtac module firmware · CWE-257 | Orta6,5 | — | %0,5 | 10 May 2023 |
26İzleyin | CVE-2023-31168İstismar yok | Inclusion of Functionality from Untrusted Control Sphereselinc · sel-5030 acselerator quickset · CWE-829 | Orta6,5 | — | %0,4 | 31 Ağu 2023 |
26İzleyin | CVE-2023-31170İstismar yok | Inclusion of Functionality from Untrusted Control Sphereselinc · sel-5030 acselerator quickset · CWE-829 | Orta6,5 | — | %0,3 | 31 Ağu 2023 |
26İzleyin | CVE-2023-31171İstismar yok | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')selinc · sel-5030 acselerator quickset · CWE-89 | Orta6,5 | — | %0,3 | 31 Ağu 2023 |
26İzleyin | CVE-2023-31174İstismar yok | Cross-Site Request Forgery (CSRF)selinc · sel-5037 sel grid configurator · CWE-352 | Orta6,5 | — | %0,2 | 31 Ağu 2023 |
24İzleyin | CVE-2013-0665İstismar yok | Schweitzer Engineering Laboratories (SEL) AcSELerator QuickSet before 5.12.0.1 uses weak permissions for its Program Files directory, which selinc · acselerator quickset · CWE-264 | Orta6,2 | — | %1,2 | 21 Mar 2013 |
- CVE-2017-792841Planlayın
An Improper Access Control issue was discovered in Schweitzer Engineering Laboratories (SEL) SEL-3620 and SEL-3622 Security Gateway Versions
KritikCVSS 10,0İstismar yokEPSS %2selinc · sel-3620 firmware7 Ağu 2017
- CVE-2018-1060040Planlayın
SEL AcSELerator Architect version 2.2.24.0 and prior allows unsanitized input to be passed to the XML parser, which may allow disclosure and
KritikCVSS 9,8İstismar yokEPSS %2selinc · acselerator architect24 Tem 2018
- CVE-2023-3117639İzleyin
Insufficient entropy vulnerability could lead to authentication bypass
KritikCVSS 9,8İstismar yokEPSS %1selinc · sel-451 firmware30 Kas 2023
- CVE-2023-3438839İzleyin
Improper authentication could lead to session hijacking
KritikCVSS 9,8İstismar yokEPSS %1selinc · sel-451 firmware30 Kas 2023
- CVE-2023-3117539İzleyin
Execution with Unnecessary Privileges
KritikCVSS 9,8İstismar yokEPSS %0selinc · sel-5037 sel grid configurator31 Ağu 2023
- CVE-2018-1060435İzleyin
SEL Compass version 3.0.5.1 and prior allows all users full access to the SEL Compass directory, which may allow modification or overwriting
YüksekCVSS 8,8İstismar yokEPSS %2selinc · sel compass24 Tem 2018
- CVE-2023-3114935İzleyin
Improper Input Validation in Web Interface
YüksekCVSS 8,8İstismar yokEPSS %1selinc · sel-2241 rtac module firmware10 May 2023
- CVE-2023-3114835İzleyin
Improper Input Validation in Web Interface
YüksekCVSS 8,8İstismar yokEPSS %1selinc · sel-2241 rtac module firmware10 May 2023
- CVE-2023-3116135İzleyin
Improper Input Validation in Web Interface
YüksekCVSS 8,8İstismar yokEPSS %1selinc · sel-3350 firmware10 May 2023
- CVE-2023-3439235İzleyin
Missing Authentication for Critical Function
YüksekCVSS 8,8İstismar yokEPSS %0selinc · sel-5037 sel grid configurator31 Ağu 2023
- CVE-2023-3115235İzleyin
Authentication Bypass Using an Alternate Path or Channel
YüksekCVSS 8,8İstismar yokEPSS %0selinc · sel-2241 rtac module firmware10 May 2023
- CVE-2023-3117333İzleyin
Use of Hard-coded Credentials
YüksekCVSS 8,4İstismar yokEPSS %0selinc · sel-5037 sel grid configurator31 Ağu 2023
- CVE-2018-1060832İzleyin
SEL AcSELerator Architect version 2.2.24.0 and prior can be exploited when the AcSELerator Architect FTP client connects to a malicious FTP
YüksekCVSS 7,5Kavram kanıtıEPSS %8selinc · acselerator architect24 Tem 2018
- CVE-2023-3116732İzleyin
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
YüksekCVSS 8,1İstismar yokEPSS %0selinc · sel-5036 acselerator bay screen builder31 Ağu 2023
- CVE-2023-226431İzleyin
Improper input validition could lead to code injection
YüksekCVSS 7,8İstismar yokEPSS %0selinc · sel-411l firmware30 Kas 2023
- CVE-2013-279229İzleyin
Schweitzer Engineering Laboratories (SEL) SEL-2241, SEL-3505, and SEL-3530 RTAC master devices allow remote attackers to cause a denial of s
YüksekCVSS 7,1İstismar yokEPSS %2selinc · sel-22419 Ağu 2013
- CVE-2023-3117229İzleyin
Incomplete Filtering of Special Elements
YüksekCVSS 7,4İstismar yokEPSS %0selinc · sel-5030 acselerator quickset31 Ağu 2023
- CVE-2023-3438926İzleyin
Allocation of resources without limits could lead to denial of service
OrtaCVSS 6,5İstismar yokEPSS %1selinc · sel-451 firmware30 Kas 2023
- CVE-2023-3439026İzleyin
Improper input validation could lead to denial of service
OrtaCVSS 6,5İstismar yokEPSS %1selinc · sel-451 firmware30 Kas 2023
- CVE-2023-3115026İzleyin
Storing Passwords in a Recoverable Format
OrtaCVSS 6,5İstismar yokEPSS %0selinc · sel-2241 rtac module firmware10 May 2023
- CVE-2023-3116826İzleyin
Inclusion of Functionality from Untrusted Control Sphere
OrtaCVSS 6,5İstismar yokEPSS %0selinc · sel-5030 acselerator quickset31 Ağu 2023
- CVE-2023-3117026İzleyin
Inclusion of Functionality from Untrusted Control Sphere
OrtaCVSS 6,5İstismar yokEPSS %0selinc · sel-5030 acselerator quickset31 Ağu 2023
- CVE-2023-3117126İzleyin
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
OrtaCVSS 6,5İstismar yokEPSS %0selinc · sel-5030 acselerator quickset31 Ağu 2023
- CVE-2023-3117426İzleyin
Cross-Site Request Forgery (CSRF)
OrtaCVSS 6,5İstismar yokEPSS %0selinc · sel-5037 sel grid configurator31 Ağu 2023
- CVE-2013-066524İzleyin
Schweitzer Engineering Laboratories (SEL) AcSELerator QuickSet before 5.12.0.1 uses weak permissions for its Program Files directory, which
OrtaCVSS 6,2İstismar yokEPSS %1selinc · acselerator quickset21 Mar 2013