Vulnerabilities > Rapidscada > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-02-02 CVE-2024-21794 Open Redirect vulnerability in Rapidscada Rapid Scada
In Rapid Software LLC's Rapid SCADA versions prior to Version 5.8.4, an attacker can redirect users to malicious pages through the login page.
network
low complexity
rapidscada CWE-601
5.4
2024-02-02 CVE-2024-21866 Information Exposure Through an Error Message vulnerability in Rapidscada Rapid Scada
In Rapid Software LLC's Rapid SCADA versions prior to Version 5.8.4, the affected product responds back with an error message containing sensitive data if it receives a specific malformed request.
network
low complexity
rapidscada CWE-209
5.3
2024-02-02 CVE-2024-21869 Insufficiently Protected Credentials vulnerability in Rapidscada Rapid Scada
In Rapid Software LLC's Rapid SCADA versions prior to Version 5.8.4, the affected product stores plaintext credentials in various places.
local
low complexity
rapidscada CWE-522
5.5
2024-02-02 CVE-2024-22096 Path Traversal vulnerability in Rapidscada Rapid Scada
In Rapid Software LLC's Rapid SCADA versions prior to Version 5.8.4, an attacker can append path traversal characters to the filename when using a specific command, allowing them to read arbitrary files from the system.
network
low complexity
rapidscada CWE-22
6.5
2022-12-07 CVE-2022-44153 Cross-site Scripting vulnerability in Rapidscada Rapid Scada 5.8.4
Rapid Software LLC Rapid SCADA 5.8.4 is vulnerable to Cross Site Scripting (XSS).
network
low complexity
rapidscada CWE-79
6.1