漏洞列表

漏洞类别:
漏洞等级:
SSV ID 漏洞名称
SSV-98880 Hangzhou Xiongmai Technology Co., Ltd XMeye P2P Cloud Server Predictable From Observable State, Hidden Functionality, Missing Encryption of Sensitive Data (CVE-2018-17915 CVE-2018-17919 CVE-2018-17917 )
SSV-98879 Siemens SIMATIC S7-1500, SIMATIC S7-1500 Software Controller and SIMATIC ET 200SP OpenController (Update A) Improper Input Validation (CVE-2018-13805)
SSV-98878 Siemens SIMATIC S7-1200 CPU Family Version 4 Cross-Site Request Forgery (CSRF) (CVE-2018-13800)
SSV-98877 Siemens ROX II Improper Privilege Management (CVE-2018-13802 CVE-2018-13801 )
SSV-98876 Siemens SCALANCE W1750D Cryptographic issues (CVE-2017-13099)
SSV-98875 GE iFix Unsafe ActiveX Control Marked Safe For Scripting (CVE-2018-17925)
SSV-98874 Delta Industrial Automation TPEditor Out-of-bounds Write, Stack-based Buffer Overflow (CVE-2018-17927 CVE-2018-17929 )
SSV-98873 NUUO CMS (Update A) Use of Insufficiently Random Values, Use of Obsolete Function, Incorrect Permission Assignment for Critical Resource, Use of Hard-coded Credentials, Path Traversal, Unrestricted Upload of File with Dangerous Type, SQL Injection (CVE-2018-18982 CVE-2018-17936 CVE-2018-17934 CVE-2018-17894 CVE-2018-17892 CVE-2018-17890 CVE-2018-17888 )
SSV-98872 NUUO NVRmini2 and NVRsolo Stack-based Buffer Overflow, Leftover Debug Code (CVE-2018-1150 CVE-2018-1149 )
SSV-98871 Omron CX-Supervisor (Update A) Improper Restriction of Operations within the Bounds of a Memory Buffer, Out-Of-Bounds Read, Use-After-Free, Incorrect Type Conversion or Cast (CVE-2018-17913 CVE-2018-17909 CVE-2018-17907 CVE-2018-17905 )
SSV-98870 Telecrane F25 Series Authentication Bypass by Capture-Replay (CVE-2018-17935)
SSV-98869 GAIN Electronic Co. Ltd SAGA1-L Series Authentication Bypass by Capture-replay, Improper Access Control, Improper Authentication (CVE-2018-17923 CVE-2018-17921 CVE-2018-17903 )
SSV-98868 Advantech WebAccess Stack-based Buffer Overflow, External Control of File Name or Path, Improper Privilege Management, Path Traversal (CVE-2018-14806 CVE-2018-14828 CVE-2018-14820 CVE-2018-14816 )
SSV-98867 Advantech WebAccess Improper Access Control, Stack-based Buffer Overflow (CVE-2018-17910 CVE-2018-17908 )
SSV-98866 GEOVAP Reliance 4 SCADA/HMI Cross-site Scripting (CVE-2018-17904)
SSV-98865 PEPPERL+FUCHS CT50-Ex Improper Privilege Management (CVE-2018-14825)
SSV-98864 Fr. Sauter AG CASE Suite Improper Restriction of XML External Entity Reference (CVE-2018-17912)
SSV-98863 Circontrol CirCarLife Authentication Bypass Using an Alternate Path or Channel, Insufficiently Protected Credentials (CVE-2018-17922 CVE-2018-17918 )
SSV-98862 Schneider Electric Software Update (SESU) (Update A) DLL hijacking (CVE-2018-7799)
SSV-98861 AVEVA InduSoft Web Studio and InTouch Edge HMI (formerly InTouch Machine Edition) Stack-based Buffer Overflow, Empty Password in Configuration File (CVE-2018-17914 CVE-2018-17916 )