CVE-2024-12057
- EPSS 0.05%
- Veröffentlicht 09.12.2024 19:15:12
- Zuletzt bearbeitet 09.12.2024 19:15:12
User credentials (login & password) are inserted into log files when a user tries to authenticate using a version of a Web client that is not compatible with that of the PcVue Web back end. By exploiting this vulnerability, an attacker could retrieve...
CVE-2024-12056
- EPSS 0.04%
- Veröffentlicht 04.12.2024 15:15:09
- Zuletzt bearbeitet 04.12.2024 15:15:09
The Client secret is not checked when using the OAuth Password grant type. By exploiting this vulnerability, an attacker could connect to a web server using a client application not explicitly authorized as part of the OAuth deployment. Exploitation...
CVE-2011-4044
- EPSS 61.86%
- Veröffentlicht 03.04.2012 03:44:36
- Zuletzt bearbeitet 11.04.2025 00:51:21
An unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to modify files via calls to unknown methods.
CVE-2011-4045
- EPSS 9%
- Veröffentlicht 03.04.2012 03:44:36
- Zuletzt bearbeitet 11.04.2025 00:51:21
Buffer overflow in an unspecified ActiveX control in aipgctl.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to cause a denial of service via a crafted HTML document.
CVE-2011-4042
- EPSS 23.34%
- Veröffentlicht 03.04.2012 03:44:35
- Zuletzt bearbeitet 11.04.2025 00:51:21
An unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code by using a crafted HTML document to obtain control of a function pointer.
CVE-2011-4043
- EPSS 24.91%
- Veröffentlicht 03.04.2012 03:44:35
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in an unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code via a large value for an integer parameter, leading to a buffer ove...