SCADA Family for Nessus

IDNameSeverity
172391Contec CONPROSYS HMI System (CHS) OS Command Injection (CVE-2022-44456)
critical
170034Schneider Electric APC Easy UPS Online Monitoring Software Detection
info
170033Schneider Electric APC Easy UPS Online Monitoring Software Missing Authentication (CVE-2022-42970)
critical
170026Siemens Automation License Manager 5.x < 6.0 SP9 Upd4 Multiple Vulnerabilities (SSA-476715)
critical
169462Advantech iView ConfigurationServlet SQLi (CVE-2022-3323)
high
168263Delta Electronics InfraSuite Device Master Gateway Detection
info
168262Delta Electronics InfraSuite Device Master Gateway Information Disclosure (CVE-2022-41629)
critical
165703Delta Electronics DIALink Detection
info
165702Delta Electronics DIALink Known Cryptographic Key Authentication Bypass (CVE-2022-2660)
high
165180Delta Electronics DIAEnergie Blind SQLi (CVE-2022-26013)
critical
164696Keysight Technologies Sensor Management Server addLicenseFile Path Traversal (CVE-2022-38129)
critical
164195Advantech iView runProViewUpgrade fwfilename Command Injection (CVE-2022-2143)
critical
164194Advantech iView Detection
info
163515Schneider Electric IGSS Data Server Out-of-bounds Write (CVE-2022-32526)
critical
162819Keysight Technologies Sensor Management Server Deserialization RCE (CVE-2022-1660)
critical
162818Keysight Technologies Sensor Management Server Detection
info
162507Siemens SIMATIC WinCC OA (Open Architecture) Detection
info
161894Delta Electronics DIAEnergie Detection
info
161893Delta Electronics DIAEnergie Blind SQLi (CVE-2021-38391)
critical
159008Schneider Electric IGSS Data Server Path Traversal (CVE-2022-24312)
critical
158460VISAM Automation Base (VBASE) Web-Remote Detection
info
158459VISAM Automation Base (VBASE) Web-Remote Path Traversal (CVE-2020-7008)
high
155947CODESYS V3 Web Server Heap-based Buffer Overflow (CVE-2021-33485)
critical
155316Schneider Electric ISGG dc.exe File Upload RCE (CVE-2021-22803)
critical
155154Nucleus FTP Server Multiple Vulnerabilities (NUCLEUS:13)
critical
154814Johnson Controls exacqVision Web Service Information Disclosure (JCI-PSA-2021-16)
critical
152531Siemens Automation License Manager 5.x < 6.0.9 DoS (SSA-158827)
high
152099CODESYS V2 Web Server Detection
info
152098CODESYS V2 Web Server Improperly Implemented Security Check (2021-07)
critical
151191Johnson Controls exacqVision Web Service Information Disclosure (JCI-PSA-2021-03)
high
151190Johnson Controls exacqVision Web Service Detection
info
150962CodeMeter Runtime Buffer Over-read (WIBU-210423-01)
critical
149972Schneider Electric C-Gate Detection
info
149971Schneider Electric C-Gate < 2.11.6 Multiple Vulnerabilities
high
149523OPC UA opc.tcp Detection
info
149522PTC OPC UA Server Multiple vulnerabilities
critical
149308CodeMeter Runtime Detection
info
149307CodeMeter Runtime Predictable Encryption Key
critical
146453Siemens TIA Administrator Privilege Escalation (SSA-428051)
high
146452Siemens TIA Administrator Detection
info
145268Rockwell Automation RSLinx Classic <= 2.57.00.14 DoS (CVE-2020-13573)
high
141304Rockwell Automation FactoryTalk Linx Path Traversal Information Disclosure
high
139606Siemens Automation License Manager 5.x < 6.0.8 Privilege Escalation (SSA-388646)
high
137356Inductive Automation Ignition 8.x < 8.0.10 Multiple Vulnerabilities
high
1361823S CODESYS Runtime 3.x < 3.5.15.40 Multiple Vulnerabilities
critical
135696Rockwell Automation RSLinx Classic < 4.11.00 Local Privilege Escalation
high
1349773S CODESYS Runtime 3.x < 3.5.14.20 Multiple Vulnerabilities
critical
133216Siemens SIMATIC STEP 7 Local Privilege Escalation Vulnerability in TIA Portal (SSA-629512)
high
131775Siemens SIMATIC S7-1200 PLC UDP Denial of Service (CVE-2019-10936)
high
131736CODESYS ENI Server < 3.2.2.25 Stack Overflow (credentialed check)
critical