Openautomationsoftware

Oas Platform

16 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 2.7%
  • Veröffentlicht 25.05.2022 21:15:08
  • Zuletzt bearbeitet 21.11.2024 06:53:23

A file write vulnerability exists in the OAS Engine SecureTransferFiles functionality of Open Automation Software OAS Platform V16.00.0112. A specially-crafted series of network requests can lead to remote code execution. An attacker can send a seque...

Exploit
  • EPSS 0.28%
  • Veröffentlicht 25.05.2022 21:15:08
  • Zuletzt bearbeitet 21.11.2024 06:53:43

An external config control vulnerability exists in the OAS Engine SecureAddUser functionality of Open Automation Software OAS Platform V16.00.0112. A specially-crafted series of network requests can lead to the creation of an OAS user account. An att...

Exploit
  • EPSS 92.53%
  • Veröffentlicht 25.05.2022 21:15:08
  • Zuletzt bearbeitet 21.11.2024 06:54:36

An improper authentication vulnerability exists in the REST API functionality of Open Automation Software OAS Platform V16.00.0121. A specially-crafted series of HTTP requests can lead to unauthenticated use of the REST API. An attacker can send a se...

Exploit
  • EPSS 0.79%
  • Veröffentlicht 25.05.2022 21:15:08
  • Zuletzt bearbeitet 21.11.2024 06:55:20

An information disclosure vulnerability exists in the OAS Engine SecureBrowseFile functionality of Open Automation Software OAS Platform V16.00.0112. A specially-crafted network request can lead to a disclosure of sensitive information. An attacker c...

Exploit
  • EPSS 0.4%
  • Veröffentlicht 25.05.2022 21:15:07
  • Zuletzt bearbeitet 21.11.2024 06:53:20

A denial of service vulnerability exists in the OAS Engine SecureConfigValues functionality of Open Automation Software OAS Platform V16.00.0112. A specially-crafted network request can lead to loss of communications. An attacker can send a network r...

Exploit
  • EPSS 0.27%
  • Veröffentlicht 25.05.2022 21:15:07
  • Zuletzt bearbeitet 21.11.2024 06:53:20

An external config control vulnerability exists in the OAS Engine SecureAddSecurity functionality of Open Automation Software OAS Platform V16.00.0112. A specially-crafted series of network requests can lead to the creation of a custom Security Group...