schneider-electric
765 tracked vulnerabilities.
CVE-2018-7228
CRITICAL
Schneider Electric Pelco Sarix Professional < 3.29.67 - Unauthenticated Authentication Bypass
Mar 09, 2018
CVSS 9.8
EPSS 0.01
CVE-2018-7227
MEDIUM
Schneider Electric Pelco Sarix Professional < 3.29.67 - Unauthenticated Sensitive Information Exposure via Crafted URL
Mar 09, 2018
CVSS 5.3
EPSS 0.00
CVE-2018-2678
MEDIUM
Oracle JDK and JRE - Unauthenticated Partial Denial of Service via JNDI
Jan 18, 2018
CVSS 4.3
EPSS 0.00
CVE-2018-2677
MEDIUM
Oracle Java SE <9.0.1 - Info Disclosure
Jan 18, 2018
CVSS 4.3
EPSS 0.00
CVE-2018-2663
MEDIUM
Oracle Java SE <9.0.1 - Info Disclosure
Jan 18, 2018
CVSS 4.3
EPSS 0.00
CVE-2018-2657
MEDIUM
Oracle Java SE <7u161 - Use After Free
Jan 18, 2018
CVSS 5.3
EPSS 0.00
CVE-2018-2641
MEDIUM
Oracle Java SE <9.0.1 - Info Disclosure
Jan 18, 2018
CVSS 6.1
EPSS 0.00
CVE-2018-2637
HIGH
Oracle JDK and JRE - Unauthenticated Data Manipulation and Access via JMX
Jan 18, 2018
CVSS 7.4
EPSS 0.00
CVE-2018-2634
MEDIUM
Oracle JDK 7u161, 8u152, 9.0.1 and Java SE Embedded 8u151 - Unauthenticated Data Access via JGSS
Jan 18, 2018
CVSS 6.8
EPSS 0.00
CVE-2018-2633
HIGH
Oracle Java SE <9.0.1 - Info Disclosure
Jan 18, 2018
CVSS 8.3
EPSS 0.01
CVE-2018-2629
MEDIUM
Oracle Java SE <9.0.1 - Info Disclosure
Jan 18, 2018
CVSS 5.3
EPSS 0.00
CVE-2018-2618
MEDIUM
Oracle Java SE <9.0.1 - Unauthenticated RCE
Jan 18, 2018
CVSS 5.9
EPSS 0.00
CVE-2018-2603
MEDIUM
Oracle JDK 6u171, 7u161, 8u152, 9.0.1; Java SE Embedded 8u151; JRockit R28.3.16 - Partial DoS via Multiple Protocols
Jan 18, 2018
CVSS 5.3
EPSS 0.00
CVE-2018-2602
MEDIUM
Oracle Java SE <9.0.1 - Info Disclosure
Jan 18, 2018
CVSS 4.5
EPSS 0.00
CVE-2018-2599
MEDIUM
Oracle Java SE <9.0.1 - Unauthorized Update
Jan 18, 2018
CVSS 4.8
EPSS 0.00
CVE-2018-2588
MEDIUM
Oracle JDK and JRE - Unauthorized Data Access via LDAP
Jan 18, 2018
CVSS 4.3
EPSS 0.00
CVE-2018-2582
MEDIUM
Oracle Java SE <9.0.1 - RCE
Jan 18, 2018
CVSS 6.5
EPSS 0.00
CVE-2018-2579
LOW
Oracle Java SE <9.0.1 - Unauthenticated Read Access
Jan 18, 2018
CVSS 3.7
EPSS 0.00
CVE-2017-9637
MEDIUM
Schneider Electric Ampla MES <6.5 - Info Disclosure
May 18, 2018
CVSS 4.1
EPSS 0.00
CVE-2017-9635
LOW
Schneider Electric Ampla MES <6.5 - Password Reversal
May 18, 2018
CVSS 3.9
EPSS 0.00
CVE-2017-6021
HIGH
Schneider Electric ClearSCADA < 2014 R1.1 - Denial of Service via Crafted Command Sequences
May 14, 2018
CVSS 7.5
EPSS 0.00
CVE-2017-9970
HIGH
Schneider Electric StruxureOn Gateway <= 1.1.3 - Remote Code Execution via Zip Metadata Injection
Feb 12, 2018
CVSS 7.2
EPSS 0.03
CVE-2017-9969
MEDIUM
Schneider Electric IGSS Mobile < 3.01 - Insufficiently Protected Credentials
Feb 12, 2018
CVSS 6.7
EPSS 0.00
CVE-2017-9968
MEDIUM
Schneider Electric IGSS Mobile < 3.01 - Man-in-the-Middle via Certificate Validation Bypass
Feb 12, 2018
CVSS 5.9
EPSS 0.00
CVE-2017-9967
HIGH
Schneider Electric's IGSS SCADA Software <12 - Info Disclosure
Feb 12, 2018
CVSS 7.8
EPSS 0.00
Products
struxureware_data_center_expert 48
interactive_graphical_scada_system 43
modicon_m580_firmware 41
modicon_m340_firmware 39
modicon_m340_bmxp342020_firmware 32
modicon_m340_bmxp3420302_firmware 28
modicon_m340_bmxp341000_firmware 27
ecostruxure_control_expert 26
modicon_m340_bmxp342000_firmware 25
modicon_m340_bmxp3420102_firmware 25
modicon_quantum_firmware 25
easergy_t300_firmware 24
u.motion_builder 24
modicon_premium_firmware 23
140cpu65150_firmware 20
evlink_city_evc1s22p4_firmware 18
evlink_city_evc1s7p4_firmware 18
evlink_parking_evf2_firmware 18
evlink_parking_evw2_firmware 18
evlink_smart_wallbox_evb1a_firmware 18
modicon_m340_bmxp3420102cl_firmware 17
spacelynk_firmware 17
modicon_m221_firmware 16
modicon_m340_bmxp342020h_firmware 16
modicon_m340_bmxp3420302cl_firmware 16
modicon_m340_bmxp3420302h_firmware 16
ibp1110-1er_firmware 15
ibp219-1er_firmware 15
ibp319-1er_firmware 15
ibp519-1er_firmware 15
Quick Filters