Vulnerabilities > Openautomationsoftware > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-09-05 CVE-2023-31242 Improper Authentication vulnerability in Openautomationsoftware OAS Platform 18.00.0072
An authentication bypass vulnerability exists in the OAS Engine functionality of Open Automation Software OAS Platform v18.00.0072.
network
low complexity
openautomationsoftware CWE-287
critical
9.8
2022-05-25 CVE-2022-26082 Missing Authentication for Critical Function vulnerability in Openautomationsoftware OAS Platform 16.00.0112
A file write vulnerability exists in the OAS Engine SecureTransferFiles functionality of Open Automation Software OAS Platform V16.00.0112.
network
low complexity
openautomationsoftware CWE-306
critical
9.8
2022-05-25 CVE-2022-26833 Missing Authentication for Critical Function vulnerability in Openautomationsoftware OAS Platform 16.00.0112
An improper authentication vulnerability exists in the REST API functionality of Open Automation Software OAS Platform V16.00.0121.
network
low complexity
openautomationsoftware CWE-306
critical
9.4