CWE-767

Total CVEs
4
Vulnerabilities
Avg CVSS v3
6.7
Medium
Avg CVSS v2
6.3
Medium
Latest CVE
2024
Most Recent

Severity Distribution

Critical 0
0%
High 2
50%
Medium 2
50%
Low 0
0%

External References

All CVEs (4)

Page 1 of 1
CVSS:7.5(High)

ARC Informatique PcVue prior to version 12.0.17 is vulnerable to a denial-of-service attack due to the ability of an unauthorized user to modify information used to validate messages sent by legitimat...

CVSS:7.3(High)

The web server in Phoenix Contact ILC PLCs allows access to read and write PLC variables without authentication.

CVSS:6.5(Medium)

The implementation of atob in "Zabbix JS" allows to create a string with arbitrary content and use it to access internal properties of objects.

CVSS:5.3(Medium)

The web interface of the affected devices is designed to hide the LDAP credentials even for administrative users. But configuring LDAP authentication to "SIMPLE", the device communicates with the LDAP...