Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2017-02-13 CVE-2016-8370 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Mitsubishielectric products
An issue was discovered in Mitsubishi Electric Automation MELSEC-Q series Ethernet interface modules QJ71E71-100, all versions, QJ71E71-B5, all versions, and QJ71E71-B2, all versions.
network
low complexity
mitsubishielectric CWE-327
7.5
2017-02-13 CVE-2016-8369 Cross-Site Request Forgery (CSRF) vulnerability in Lynxspring Jenesys BAS Bridge 1.1.8
An issue was discovered in Lynxspring JENEsys BAS Bridge versions 1.1.8 and older.
network
low complexity
lynxspring CWE-352
8.8
2017-02-13 CVE-2016-8368 Improper Synchronization vulnerability in Mitsubishielectric products
An issue was discovered in Mitsubishi Electric Automation MELSEC-Q series Ethernet interface modules QJ71E71-100, all versions, QJ71E71-B5, all versions, and QJ71E71-B2, all versions.
network
low complexity
mitsubishielectric CWE-662
8.6
2017-02-13 CVE-2016-8361 Use of Hard-coded Credentials vulnerability in Lynxspring Jenesys BAS Bridge 1.1.8
An issue was discovered in Lynxspring JENEsys BAS Bridge versions 1.1.8 and older.
network
low complexity
lynxspring CWE-798
8.6
2017-02-13 CVE-2016-8360 Double Free vulnerability in Moxa Softcms
An issue was discovered in Moxa SoftCMS versions prior to Version 1.6.
network
high complexity
moxa CWE-415
8.1
2017-02-13 CVE-2016-8357 Permissions, Privileges, and Access Controls vulnerability in Lynxspring Jenesys BAS Bridge 1.1.8
An issue was discovered in Lynxspring JENEsys BAS Bridge versions 1.1.8 and older.
network
low complexity
lynxspring CWE-264
7.1
2017-02-13 CVE-2016-8356 Cross-site Scripting vulnerability in Kabona AB Webdatorcentral
An issue was discovered in Kabona AB WebDatorCentral (WDC) application prior to Version 3.4.0.
network
low complexity
kabona-ab CWE-79
8.2
2017-02-13 CVE-2016-8354 Code Injection vulnerability in Schneider-Electric Unity PRO 11.0/6.0/7.0
An issue was discovered in Schneider Electric Unity PRO prior to V11.1.
local
high complexity
schneider-electric CWE-94
7.0
2017-02-13 CVE-2016-8346 Information Exposure Through Log Files vulnerability in Moxa Edr-810 Firmware 3.12
An issue was discovered in Moxa EDR-810 Industrial Secure Router.
network
low complexity
moxa CWE-532
7.5
2017-02-13 CVE-2016-7987 Data Processing Errors vulnerability in Siemens Eta2 Firmware and Eta4 Firmware
An issue was discovered in Siemens ETA4 firmware (all versions prior to Revision 08) of the SM-2558 extension module for: SICAM AK, SICAM TM 1703, SICAM BC 1703, and SICAM AK 3.
network
low complexity
siemens CWE-19
7.5