Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2017-02-13 CVE-2017-5167 Use of Hard-coded Credentials vulnerability in Binom3 Universal Multifunctional Electric Power Quality Meter Firmware
An issue was discovered in BINOM3 Universal Multifunctional Electric Power Quality Meter.
network
low complexity
binom3 CWE-798
8.6
2017-02-13 CVE-2017-5166 Information Exposure vulnerability in Binom3 Universal Multifunctional Electric Power Quality Meter Firmware
An issue was discovered in BINOM3 Universal Multifunctional Electric Power Quality Meter.
network
low complexity
binom3 CWE-200
critical
9.8
2017-02-13 CVE-2017-5165 Cross-Site Request Forgery (CSRF) vulnerability in Binom3 Universal Multifunctional Electric Power Quality Meter Firmware
An issue was discovered in BINOM3 Universal Multifunctional Electric Power Quality Meter.
network
low complexity
binom3 CWE-352
7.6
2017-02-13 CVE-2017-5164 Cross-site Scripting vulnerability in Binom3 Universal Multifunctional Electric Power Quality Meter Firmware
An issue was discovered in BINOM3 Universal Multifunctional Electric Power Quality Meter.
network
low complexity
binom3 CWE-79
6.1
2017-02-13 CVE-2017-5163 Path Traversal vulnerability in Belden Hirschmann Gecko Lite Managed Switch Firmware
An issue was discovered in Belden Hirschmann GECKO Lite Managed switch, Version 2.0.00 and prior versions.
network
high complexity
belden-hirschmann CWE-22
5.9
2017-02-13 CVE-2017-5162 Missing Authentication for Critical Function vulnerability in Binom3 Universal Multifunctional Electric Power Quality Meter Firmware
An issue was discovered in BINOM3 Universal Multifunctional Electric Power Quality Meter.
network
low complexity
binom3 CWE-306
critical
9.8
2017-02-13 CVE-2017-5161 Uncontrolled Search Path Element vulnerability in Sielcosistemi Winlog Lite and Winlog PRO
An issue was discovered in Sielco Sistemi Winlog Lite SCADA Software, versions prior to Version 3.02.01, and Winlog Pro SCADA Software, versions prior to Version 3.02.01.
local
high complexity
sielcosistemi CWE-427
7.2
2017-02-13 CVE-2017-5159 Resource Injection vulnerability in Phoenixcontact Mguard Firmware 8.4.0
An issue was discovered on Phoenix Contact mGuard devices that have been updated to Version 8.4.0.
network
low complexity
phoenixcontact CWE-99
critical
9.8
2017-02-13 CVE-2017-5157 Cross-site Scripting vulnerability in Schneider Electric Homelynk Controller Lss100100 Firmware 1.3.0
An issue was discovered in Schneider Electric homeLYnk Controller, LSS100100, all versions prior to V1.5.0.
network
low complexity
schneider-electric CWE-79
6.1
2017-02-13 CVE-2017-5155 Insecure Default Initialization of Resource vulnerability in Schneider-Electric Wonderware Historian 2014R2Sp1P01
An issue was discovered in Schneider Electric Wonderware Historian 2014 R2 SP1 P01 and earlier.
network
low complexity
schneider-electric CWE-1188
7.3