Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2017-02-13 CVE-2016-8346 Information Exposure Through Log Files vulnerability in Moxa Edr-810 Firmware 3.12
An issue was discovered in Moxa EDR-810 Industrial Secure Router.
network
low complexity
moxa CWE-532
7.5
2017-02-13 CVE-2016-8344 Improper Input Validation vulnerability in Honeywell Experion Process Knowledge System
An issue was discovered in Honeywell Experion Process Knowledge System (PKS) platform: Experion PKS, Release 3xx and prior, Experion PKS, Release 400, Experion PKS, Release 410, Experion PKS, Release 430, and Experion PKS, Release 431.
network
high complexity
honeywell CWE-20
3.7
2017-02-13 CVE-2016-8341 SQL Injection vulnerability in Ecava Integraxor 5.0.413.0
An issue was discovered in Ecava IntegraXor Version 5.0.413.0.
network
low complexity
ecava CWE-89
critical
9.8
2017-02-13 CVE-2016-7987 Data Processing Errors vulnerability in Siemens Eta2 Firmware and Eta4 Firmware
An issue was discovered in Siemens ETA4 firmware (all versions prior to Revision 08) of the SM-2558 extension module for: SICAM AK, SICAM TM 1703, SICAM BC 1703, and SICAM AK 3.
network
low complexity
siemens CWE-19
7.5
2017-02-13 CVE-2016-5818 Use of Hard-coded Credentials vulnerability in Schneider-Electric Powerlogic Pm8Ecc Firmware 2.651
An issue was discovered in Schneider Electric PowerLogic PM8ECC device 2.651 and older.
network
low complexity
schneider-electric CWE-798
critical
9.8
2017-02-13 CVE-2016-5815 Improper Access Control vulnerability in Schneider-Electric products
An issue was discovered on Schneider Electric IONXXXX series power meters ION73XX series, ION75XX series, ION76XX series, ION8650 series, ION8800 series, and PM5XXX series.
network
low complexity
schneider-electric CWE-284
critical
9.8
2017-02-13 CVE-2016-5813 Information Exposure vulnerability in Visonic Powerlink2 Firmware
An issue was discovered in Visonic PowerLink2, all versions prior to October 2016 firmware release.
network
low complexity
visonic CWE-200
5.3
2017-02-13 CVE-2016-5811 Cross-site Scripting vulnerability in Visonic Powerlink2 Firmware
An issue was discovered in Visonic PowerLink2, all versions prior to October 2016 firmware release.
network
low complexity
visonic CWE-79
6.1
2017-02-13 CVE-2016-5809 Cross-Site Request Forgery (CSRF) vulnerability in Schneider-Electric products
An issue was discovered on Schneider Electric IONXXXX series power meters ION73XX series, ION75XX series, ION76XX series, ION8650 series, ION8800 series, and PM5XXX series.
network
low complexity
schneider-electric CWE-352
8.8
2017-02-13 CVE-2016-5805 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Delta Electronics Ispsoft, Pmsoft and Wplsoft
An issue was discovered in Delta Electronics WPLSoft, Versions prior to V2.42.11, ISPSoft, Versions prior to 3.02.11, and PMSoft, Versions prior to2.10.10.
local
low complexity
delta-electronics CWE-119
7.8