CVE-2022-26082
- EPSS 2.7%
- Veröffentlicht 25.05.2022 21:15:08
- Zuletzt bearbeitet 21.11.2024 06:53:23
A file write vulnerability exists in the OAS Engine SecureTransferFiles functionality of Open Automation Software OAS Platform V16.00.0112. A specially-crafted series of network requests can lead to remote code execution. An attacker can send a seque...
CVE-2022-26303
- EPSS 0.28%
- Veröffentlicht 25.05.2022 21:15:08
- Zuletzt bearbeitet 21.11.2024 06:53:43
An external config control vulnerability exists in the OAS Engine SecureAddUser functionality of Open Automation Software OAS Platform V16.00.0112. A specially-crafted series of network requests can lead to the creation of an OAS user account. An att...
CVE-2022-26833
- EPSS 92.53%
- Veröffentlicht 25.05.2022 21:15:08
- Zuletzt bearbeitet 21.11.2024 06:54:36
An improper authentication vulnerability exists in the REST API functionality of Open Automation Software OAS Platform V16.00.0121. A specially-crafted series of HTTP requests can lead to unauthenticated use of the REST API. An attacker can send a se...
CVE-2022-27169
- EPSS 0.79%
- Veröffentlicht 25.05.2022 21:15:08
- Zuletzt bearbeitet 21.11.2024 06:55:20
An information disclosure vulnerability exists in the OAS Engine SecureBrowseFile functionality of Open Automation Software OAS Platform V16.00.0112. A specially-crafted network request can lead to a disclosure of sensitive information. An attacker c...
CVE-2022-26026
- EPSS 0.4%
- Veröffentlicht 25.05.2022 21:15:07
- Zuletzt bearbeitet 21.11.2024 06:53:20
A denial of service vulnerability exists in the OAS Engine SecureConfigValues functionality of Open Automation Software OAS Platform V16.00.0112. A specially-crafted network request can lead to loss of communications. An attacker can send a network r...
CVE-2022-26043
- EPSS 0.27%
- Veröffentlicht 25.05.2022 21:15:07
- Zuletzt bearbeitet 21.11.2024 06:53:20
An external config control vulnerability exists in the OAS Engine SecureAddSecurity functionality of Open Automation Software OAS Platform V16.00.0112. A specially-crafted series of network requests can lead to the creation of a custom Security Group...