SCADA Family for Nessus

IDNameSeverity
187748Rockwell FactoryTalk Services Platform < 6.20 Deserialization
critical
187747Rockwell FactoryTalk Services Platform Installed (Windows)
info
187746Rockwell FactoryTalk Services Platform < 6.20 Privilege Escalation
high
183240LG LED Assistant Detection
info
183239LG LED Assistant Path Traversal (CVE-2023-4613)
critical
182188Control iD iDSecure Hard-coded JWT Key Authentication Bypass (CVE-2023-33371)
critical
182187Control iD iDSecure Detection
info
180191Rockwell Automation ThinManager ThinServer Path Traversal File Upload (CVE-2023-2917)
critical
180180CODESYS Development System Installed (Windows)
info
178747CyberPower PowerPanel Business Management Use of Default Password (CVE-2023-25131)
critical
178746CyberPower PowerPanel Business Management Detection
info
177893Rockwell Automation ControlLogix Communications Modules Multiple Vulnerabilities
critical
177892Rockwell Automation ControlLogix Service Detection
info
176666Moxa MXsecurity Series Detection
info
176665Moxa MXsecurity Series Hard-coded JWT Key Authentication Bypass (CVE-2023-33236)
critical
176356Schneider Electric APC Easy UPS Online Monitoring Software Unauthenticated RMI Calls (CVE-2023-28411)
critical
174624Siemens SIMATIC TIA Portal Path Traversal (SSA-116924)
high
174566RoboDK < 5.5.4 Incorrect Permission Assignment
high
174565RoboDK Installed (Windows)
info
174122Contec CONPROSYS HMI System (CHS) SQL Injection (CVE-2023-1658)
high
173829Delta Electronics InfraSuite Device Master Gateway Deserialization of Untrusted Data (CVE-2023-1133)
critical
173823Rockwell Automation ThinManager ThinServer Detection
info
173822Rockwell Automation ThinManager ThinServer Path Traversal File Upload (CVE-2023-27855)
critical
172392Contec CONPROSYS HMI System (CHS) Detection
info
172391Contec CONPROSYS HMI System (CHS) OS Command Injection (CVE-2022-44456)
critical
170034Schneider Electric APC Easy UPS Online Monitoring Software Detection
info
170033Schneider Electric APC Easy UPS Online Monitoring Software Missing Authentication (CVE-2022-42970)
critical
170026Siemens Automation License Manager 5.x < 6.0 SP9 Upd4 Multiple Vulnerabilities (SSA-476715)
critical
169462Advantech iView ConfigurationServlet SQLi (CVE-2022-3323)
high
168263Delta Electronics InfraSuite Device Master Gateway Detection
info
168262Delta Electronics InfraSuite Device Master Gateway Information Disclosure (CVE-2022-41629)
critical
165703Delta Electronics DIALink Detection
info
165702Delta Electronics DIALink Known Cryptographic Key Authentication Bypass (CVE-2022-2660)
high
165180Delta Electronics DIAEnergie Blind SQLi (CVE-2022-26013)
critical
164696Keysight Technologies Sensor Management Server addLicenseFile Path Traversal (CVE-2022-38129)
critical
164195Advantech iView runProViewUpgrade fwfilename Command Injection (CVE-2022-2143)
critical
164194Advantech iView Detection
info
163515Schneider Electric IGSS Data Server Out-of-bounds Write (CVE-2022-32526)
critical
162819Keysight Technologies Sensor Management Server Deserialization RCE (CVE-2022-1660)
critical
162818Keysight Technologies Sensor Management Server Detection
info
162507Siemens SIMATIC WinCC OA (Open Architecture) Detection
info
161894Delta Electronics DIAEnergie Detection
info
161893Delta Electronics DIAEnergie Blind SQLi (CVE-2021-38391)
critical
159008Schneider Electric IGSS Data Server Path Traversal (CVE-2022-24312)
critical
158460VISAM Automation Base (VBASE) Web-Remote Detection
info
158459VISAM Automation Base (VBASE) Web-Remote Path Traversal (CVE-2020-7008)
high
155947CODESYS V3 Web Server Heap-based Buffer Overflow (CVE-2021-33485)
critical
155316Schneider Electric ISGG dc.exe File Upload RCE (CVE-2021-22803)
critical
155154Nucleus FTP Server Multiple Vulnerabilities (NUCLEUS:13)
critical
154814Johnson Controls exacqVision Web Service Information Disclosure (JCI-PSA-2021-16)
critical