Vulnerabilities > Sauter

DATE CVE VULNERABILITY TITLE RISK
2016-02-06 CVE-2015-7916 Cross-site Scripting vulnerability in Sauter-Controls Moduweb Vision 1.5
Cross-site scripting (XSS) vulnerability in Sauter EY-WS505F0x0 moduWeb Vision before 1.6.0 allows remote authenticated users to inject arbitrary web script or HTML via a crafted query.
3.5
2016-02-06 CVE-2015-7915 Information Exposure vulnerability in Sauter Moduweb Vision 1.5.5
Sauter EY-WS505F0x0 moduWeb Vision before 1.6.0 sends cleartext credentials, which allows remote attackers to obtain sensitive information by sniffing the network.
network
low complexity
sauter CWE-200
critical
10.0
2016-02-06 CVE-2015-7914 7PK - Security Features vulnerability in Sauter Moduweb Vision 1.5.5
Sauter EY-WS505F0x0 moduWeb Vision before 1.6.0 allows remote attackers to bypass authentication by leveraging knowledge of a password hash without knowledge of the associated password.
network
sauter CWE-254
critical
9.3