Vulnerabilities > Ecava > Integraxor

DATE CVE VULNERABILITY TITLE RISK
2012-04-02 CVE-2012-0246 Path Traversal vulnerability in Ecava Integraxor
Directory traversal vulnerability in an unspecified ActiveX control in Ecava IntegraXor before 3.71.4200 allows remote attackers to execute arbitrary code via vectors involving an HTML document on the server.
network
ecava CWE-22
critical
9.3
2011-07-28 CVE-2011-2958 Cross-Site Scripting vulnerability in Ecava Integraxor
Multiple cross-site scripting (XSS) vulnerabilities in Ecava IntegraXor before 3.60 (Build 4080) allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
ecava CWE-79
4.3
2010-12-23 CVE-2010-4599 DLL Loading Arbitrary Code Execution vulnerability in Ecava Integraxor 3.6.4000.0
Untrusted search path vulnerability in Ecava IntegraXor 3.6.4000.0 allows local users to gain privileges via a Trojan horse dwmapi.dll file in the current working directory.
local
ecava
6.9
2010-12-23 CVE-2010-4598 Path Traversal vulnerability in Ecava Integraxor 3.5.3900.10/3.5.3900.5/3.6.4000.0
Directory traversal vulnerability in Ecava IntegraXor 3.6.4000.0 and earlier allows remote attackers to read arbitrary files via a ..
network
low complexity
ecava CWE-22
5.0
2010-12-23 CVE-2010-4597 Buffer Errors vulnerability in Ecava Integraxor 3.5.3900.5
Stack-based buffer overflow in the save method in the IntegraXor.Project ActiveX control in igcomm.dll in Ecava IntegraXor Human-Machine Interface (HMI) before 3.5.3900.10 allows remote attackers to execute arbitrary code via a long string in the second argument.
network
low complexity
ecava CWE-119
critical
10.0