SCADA Family for Nessus

IDNameSeverity
97436Modicon Modbus/TCP UnityPro Programming Function Code Access
medium
97327Ecava IntegraXor 5.0.413.0 getdata Requests Handling Multiple SQLi
critical
96876Advantech WebAccess SQLi
critical
96875Advantech WebAccess Authentication Bypass
critical
95716Siemens SIMATIC WinCC (TIA Portal) < 14 Unquoted Service Path Local Privilege Escalation (SSA-701708)
medium
95715Siemens SIMATIC STEP 7 (TIA Portal) < 14 Unquoted Service Path Local Privilege Escalation (SSA-701708)
medium
95714Siemens SINEMA Server < 13 SP2 Unquoted Service Path Local Privilege Escalation (SSA-701708)
medium
95713Siemens SINEMA Server Installed
info
94329OMRON FINS UDP Protocol Detection
info
94328OMRON FINS TCP Protocol Detection
info
91626Panasonic FPWIN Pro 5.x < 7.130 Multiple Vulnerabilities
medium
91625Panasonic Control FPWIN Pro Detection
info
91624Cogent DataHub < 6.4.7 Incoming DDE Connection Handling Remote DoS
medium
91623Cogent DataHub < 6.4.5Beta OPC Connection Failure DoS
medium
91622Cogent DataHub < 6.4.3 OPC Client Reconnection Saturation Remote DoS
medium
91385MicroLogix 1400 PLC Web Server Request Handling RCE
critical
91384MicroLogix 1400 PLC Web Server Multiple Vulnerabilities
high
91346EtherNet/IP CIP EDS Metadata
info
91345Allen-Bradley MicroLogix 1400 Multiple Vulnerabilities
critical
91284Moxa NPort Serial-to-Ethernet Server Multiple Vulnerabilities
critical
91283Moxa NPort Serial-to-Ethernet Server Detection
info
90600Rockwell Automation MicroLogix 1400 PLC Web Server Detection
info
90599Rockwell Automation MicroLogix 1400 PLC Default Credentials
critical
90003PACTware Unsupported Version Detection
critical
90002PACTware 4.1 SP3 (4.1.0.42) File Processing Error Handling DoS
medium
90001PACTware Detection
info
89111Advantech WebAccess < 8.1-2015.12.30 Multiple Vulnerabilities
high
890327-Technologies / Schneider-Electric IGSS ODBC Version Identification
info
890317-Technologies IGSS < 10.0.0 ODBC Buffer Overflow RCE
critical
890307-Technologies IGSS < 9.0.0.11143 ODBC Invalid Structure RCE
critical
890297-Technologies / Schneider-Electric IGSS ODBC Service Detection
info
88839Advantech WebAccess openWidget Script Path Traversal Remote File Disclosure
high
88417iniNet SpiderControl SCADA Web Server Detection
info
88416iniNet SpiderControl SCADA Web Server 2.02 Local Privilege Escalation
high
88415iniNet SpiderControl SCADA Editor 6.30.01 Local Privilege Escalation
high
88414iniNet SpiderControl PLC Editor Simatic 6.30.04 Local Privilege Escalation
high
88413iniNet SpiderControl PLC Editor Beckhoff 6.30.04 Local Privilege Escalation
high
88412iniNet SpiderControl SCADA Editor Detection
info
88411iniNet SpiderControl PLC Editor Simatic Detection
info
88410iniNet SpiderControl PLC Editor Beckhoff Detection
info
87891Janitza Multiple UMG Devices Remote Debug Interface RCE
high
872087-Technologies / Schneider-Electric IGSS Data Collector Detection
info
87126Emerson SM-Ethernet Web Interface Detection
info
87125Emerson SM-Ethernet Web Interface Default Credentials
high
87124Emerson SM-Ethernet FTP Server Default Credentials
critical
86899Advantech WebAccess < 8.0.2015.08.16 Unspecified DLL String Handling Arbitrary Code Execution
medium
865733S CODESYS Runtime Toolkit < 2.4.7.48 PLCWinNT DoS
medium
865723S CODESYS Runtime Toolkit < 2.4.7.48 PLCWinNT DoS (credentialed check)
medium
85842Siemens SIMATIC S7-1200 PLC < 4.1.3 XSRF
high
85692Advantech WebAccess < 7.0-2011.12.20 Multiple Vulnerabilities
high