Vulnerabilities > Tandd

DATE CVE VULNERABILITY TITLE RISK
2023-05-23 CVE-2023-22654 Cross-site Scripting vulnerability in multiple products
Client-side enforcement of server-side security issue exists in T&D Corporation and ESPEC MIC CORP.
network
low complexity
tandd especmic CWE-79
5.4
2023-05-23 CVE-2023-23545 Missing Authentication for Critical Function vulnerability in multiple products
Missing authentication for critical function exists in T&D Corporation and ESPEC MIC CORP.
network
low complexity
tandd especmic CWE-306
5.3
2023-05-23 CVE-2023-27387 Cross-Site Request Forgery (CSRF) vulnerability in multiple products
Cross-site request forgery (CSRF) in T&D Corporation and ESPEC MIC CORP.
network
low complexity
tandd especmic CWE-352
8.8
2023-05-23 CVE-2023-27388 Improper Authentication vulnerability in multiple products
Improper authentication vulnerability in T&D Corporation and ESPEC MIC CORP.
network
low complexity
tandd especmic CWE-287
critical
9.8
2022-06-14 CVE-2022-29509 Path Traversal vulnerability in Tandd T&D Server and Thermo Recorder Data Server Firmware
Directory traversal vulnerability in T&D Data Server (Japanese Edition) Ver.2.22 and earlier, T&D Data Server (English Edition) Ver.2.30 and earlier, THERMO RECORDER DATA SERVER (Japanese Edition) Ver.2.13 and earlier, and THERMO RECORDER DATA SERVER (English Edition) Ver.2.13 and earlier allows a remote attacker to view an arbitrary file on the server via unspecified vectors.
network
low complexity
tandd CWE-22
5.0