Vulnerabilities > Lcds > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2020-05-04 | CVE-2020-10622 | Unspecified vulnerability in Lcds Laquis Scada LCDS LAquis SCADA Versions 4.3.1 and prior. | 7.8 |
2019-03-27 | CVE-2019-6536 | Out-of-bounds Write vulnerability in Lcds Laquis Scada 4.1.0.4150 Opening a specially crafted LCDS LAquis SCADA before 4.3.1.71 ELS file may result in a write past the end of an allocated buffer, which may allow an attacker to execute remote code in the context of the current process. | 7.8 |
2019-02-05 | CVE-2018-19029 | NULL Pointer Dereference vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870 LCDS Laquis SCADA prior to version 4.1.0.4150 allows an attacker using a specially crafted project file to supply a pointer for a controlled memory address, which may allow remote code execution, data exfiltration, or cause a system crash. | 7.8 |
2019-02-05 | CVE-2018-19002 | Code Injection vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870 LCDS Laquis SCADA prior to version 4.1.0.4150 allows improper control of generation of code when opening a specially crafted project file, which may allow remote code execution, data exfiltration, or cause a system crash. | 7.8 |
2019-02-05 | CVE-2018-18992 | Injection vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870 LCDS Laquis SCADA prior to version 4.1.0.4150 allows taking in user input without proper sanitation, which may allow an attacker to execute remote code on the server. | 8.8 |
2019-02-05 | CVE-2018-18986 | Out-of-bounds Read vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870 LCDS Laquis SCADA prior to version 4.1.0.4150 allows the opening of a specially crafted report format file that may cause an out of bounds read, which may cause a system crash, allow data exfiltration, or remote code execution. | 7.8 |
2019-02-01 | CVE-2018-18988 | Improper Input Validation vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870 LCDS Laquis SCADA prior to version 4.1.0.4150 allows execution of script code by opening a specially crafted report format file. | 8.8 |
2018-10-17 | CVE-2018-17911 | Out-of-bounds Write vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870 LAquis SCADA Versions 4.1.0.3870 and prior has several stack-based buffer overflow vulnerabilities, which may allow remote code execution. | 7.8 |
2018-10-17 | CVE-2018-17901 | Out-of-bounds Write vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870 LAquis SCADA Versions 4.1.0.3870 and prior, when processing project files the application fails to sanitize user input prior to performing write operations on a stack object, which may allow an attacker to execute code under the current process. | 7.8 |
2018-10-17 | CVE-2018-17899 | Path Traversal vulnerability in Lcds Laquis Scada 4.1/4.1.0.3391/4.1.0.3870 LAquis SCADA Versions 4.1.0.3870 and prior has a path traversal vulnerability, which may allow remote code execution. | 8.8 |