Lucene search

K

Scada Security Vulnerabilities

cve
cve

CVE-2019-10980

A type confusion vulnerability may be exploited when LAquis SCADA 4.3.1.71 processes a specially crafted project file. This may allow an attacker to execute remote code. The attacker must have local access to the system. A CVSS v3 base score of 7.8 has been calculated; the CVSS vector string is (AV...

7.8CVSS

7.5AI Score

0.001EPSS

2019-08-05 07:15 PM
44
cve
cve

CVE-2019-10994

Processing a specially crafted project file in LAquis SCADA 4.3.1.71 may trigger an out-of-bounds read, which may allow an attacker to obtain sensitive information. The attacker must have local access to the system. A CVSS v3 base score of 2.5 has been calculated; the CVSS vector string is (AV:L/AC...

3.3CVSS

3.8AI Score

0.001EPSS

2019-08-05 07:15 PM
46
cve
cve

CVE-2020-25188

An attacker who convinces a valid user to open a specially crafted project file to exploit could execute code under the privileges of the application due to an out-of-bounds read vulnerability on the LAquis SCADA (Versions prior to 4.3.1.870).

7.8CVSS

7.5AI Score

0.001EPSS

2020-10-14 01:15 PM
24
cve
cve

CVE-2021-41579

LCDS LAquis SCADA through 4.3.1.1085 is vulnerable to a control bypass and path traversal. If an attacker can get a victim to load a malicious els project file and use the play feature, then the attacker can bypass a consent popup and write arbitrary files to OS locations where the user has permiss...

7.8CVSS

7.8AI Score

0.001EPSS

2021-10-04 06:15 PM
22