Vulnerabilities > Pepperl Fuchs > IO Link Master 4 Pnio Firmware

DATE CVE VULNERABILITY TITLE RISK
2021-01-22 CVE-2020-12514 NULL Pointer Dereference vulnerability in Pepperl-Fuchs products
Pepperl+Fuchs Comtrol IO-Link Master in Version 1.5.48 and below is prone to a NULL Pointer Dereference that leads to a DoS in discoveryd
network
low complexity
pepperl-fuchs CWE-476
4.0
2021-01-22 CVE-2020-12513 OS Command Injection vulnerability in Pepperl-Fuchs products
Pepperl+Fuchs Comtrol IO-Link Master in Version 1.5.48 and below is prone to an authenticated blind OS Command Injection.
network
low complexity
pepperl-fuchs CWE-78
critical
9.0
2021-01-22 CVE-2020-12512 Cross-site Scripting vulnerability in Pepperl-Fuchs products
Pepperl+Fuchs Comtrol IO-Link Master in Version 1.5.48 and below is prone to an authenticated reflected POST Cross-Site Scripting
3.5
2021-01-22 CVE-2020-12511 Cross-Site Request Forgery (CSRF) vulnerability in Pepperl-Fuchs products
Pepperl+Fuchs Comtrol IO-Link Master in Version 1.5.48 and below is prone to a Cross-Site Request Forgery (CSRF) in the web interface.
6.8