Vulnerabilities > Lcds > Critical

DATE CVE VULNERABILITY TITLE RISK
2019-02-05 CVE-2018-18998 Use of Hard-coded Credentials vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870
LCDS Laquis SCADA prior to version 4.1.0.4150 uses hard coded credentials, which may allow an attacker unauthorized access to the system with high privileges.
network
low complexity
lcds CWE-798
critical
9.8
2019-02-05 CVE-2018-18996 Missing Authorization vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870
LCDS Laquis SCADA prior to version 4.1.0.4150 allows taking in user input without proper authorization or sanitation, which may allow an attacker to execute remote code on the server.
network
low complexity
lcds CWE-862
critical
9.8
2018-10-17 CVE-2018-17897 Integer Overflow or Wraparound vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870
LAquis SCADA Versions 4.1.0.3870 and prior has several integer overflow to buffer overflow vulnerabilities, which may allow remote code execution.
network
low complexity
lcds CWE-190
critical
9.8
2018-10-17 CVE-2018-17895 Out-of-bounds Read vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870
LAquis SCADA Versions 4.1.0.3870 and prior has several out-of-bounds read vulnerabilities, which may allow remote code execution.
network
low complexity
lcds CWE-125
critical
9.8
2018-10-17 CVE-2018-17893 NULL Pointer Dereference vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870
LAquis SCADA Versions 4.1.0.3870 and prior has an untrusted pointer dereference vulnerability, which may allow remote code execution.
network
low complexity
lcds CWE-476
critical
9.8