Vulnerabilities > Lcds

DATE CVE VULNERABILITY TITLE RISK
2019-02-05 CVE-2018-18990 Path Traversal vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870
LCDS Laquis SCADA prior to version 4.1.0.4150 allows a user-supplied path in file operations prior to proper validation.
network
low complexity
lcds CWE-22
5.3
2019-02-05 CVE-2018-18986 Out-of-bounds Read vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870
LCDS Laquis SCADA prior to version 4.1.0.4150 allows the opening of a specially crafted report format file that may cause an out of bounds read, which may cause a system crash, allow data exfiltration, or remote code execution.
local
low complexity
lcds CWE-125
7.8
2019-02-01 CVE-2018-19004 Out-of-bounds Read vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870
LCDS Laquis SCADA prior to version 4.1.0.4150 allows out of bounds read when opening a specially crafted project file, which may allow data exfiltration.
local
low complexity
lcds CWE-125
3.3
2019-02-01 CVE-2018-18988 Improper Input Validation vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870
LCDS Laquis SCADA prior to version 4.1.0.4150 allows execution of script code by opening a specially crafted report format file.
network
low complexity
lcds CWE-20
8.8
2018-10-17 CVE-2018-17911 Out-of-bounds Write vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870
LAquis SCADA Versions 4.1.0.3870 and prior has several stack-based buffer overflow vulnerabilities, which may allow remote code execution.
local
low complexity
lcds CWE-787
7.8
2018-10-17 CVE-2018-17901 Out-of-bounds Write vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870
LAquis SCADA Versions 4.1.0.3870 and prior, when processing project files the application fails to sanitize user input prior to performing write operations on a stack object, which may allow an attacker to execute code under the current process.
local
low complexity
lcds CWE-787
7.8
2018-10-17 CVE-2018-17899 Path Traversal vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870
LAquis SCADA Versions 4.1.0.3870 and prior has a path traversal vulnerability, which may allow remote code execution.
network
low complexity
lcds CWE-22
8.8
2018-10-17 CVE-2018-17897 Integer Overflow or Wraparound vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870
LAquis SCADA Versions 4.1.0.3870 and prior has several integer overflow to buffer overflow vulnerabilities, which may allow remote code execution.
network
low complexity
lcds CWE-190
critical
9.8
2018-10-17 CVE-2018-17895 Out-of-bounds Read vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870
LAquis SCADA Versions 4.1.0.3870 and prior has several out-of-bounds read vulnerabilities, which may allow remote code execution.
network
low complexity
lcds CWE-125
critical
9.8
2018-10-17 CVE-2018-17893 NULL Pointer Dereference vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870
LAquis SCADA Versions 4.1.0.3870 and prior has an untrusted pointer dereference vulnerability, which may allow remote code execution.
network
low complexity
lcds CWE-476
critical
9.8