SCADA Family for Nessus

IDNameSeverity
81376Siemens SCALANCE X-200IRT < 5.2.0 Session Hijacking
medium
81299Siemens SIMATIC TIA Portal 13.x < 13 Upd6 Remote Code Execution
critical
81298Siemens SIMATIC TIA Portal Detection
info
81249MatrikonOPC Server for DNP3 < 1.2.3.1 Message Handling Remote DoS
medium
81248MatrikonOPC Server for DNP3 Detection
info
81107Schneider Electric Multiple Products Buffer Overflow
high
81049StruxureWare SCADA Expert ClearSCADA Weak Hashing Algorithm
medium
80910Honeywell OPOS Suite Stack Buffer Overflow
high
80359StruxureWare SCADA Expert ClearSCADA Remote Security Bypass
medium
77964Ecava IntegraXor < 4.2.4458 Multiple Vulnerabilities
high
77377CODESYS WAGO WebVisu Password Information Disclosure Vulnerability
medium
77376CODESYS WAGO WebVisu Detection
info
77375Honeywell FALCON XL Web Controller Multiple Vulnerabilities
high
77374Honeywell Excel (XL) Web Controller Detection
info
76574Triangle MicroWorks SCADA Data Gateway < 3.0.635 Multiple DoS Vulnerabilities
medium
76573Triangle MicroWorks SCADA Data Gateway Detection (credentialed check)
info
76575Triangle MicroWorks SCADA Data Gateway < 3.3.729 Heartbeat Information Disclosure (Heartbleed)
high
76147Cogent DataHub < 7.3.5 Multiple Vulnerabilities
high
73567BACnet Protocol Detection
info
73517RuggedCom RuggedOS HTTP Traffic Handling Remote DoS
medium
73516RuggedCom RuggedOS SNMP Protocol Unspecified DoS
high
73646Advantech WebAccess webvact ActiveX Multiple Buffer Overflow Vulnerabilities
high
73645Advantech WebAccess Web Administration Interface Detection
info
73644Advantech WebAccess Default Credential Check
high
73643Advantech WebAccess < 7.2-2014.06.06 Multiple Vulnerabilities
high
73642Advantech WebAccess Stored Cross-Site Scripting
low
73641Advantech WebAccess Multiple BWOCXRUN.OCX ActiveX Vulnerabilities
high
73303Ecava IntegraXor < 4.1.4410 Information Disclosure
medium
72708Mitsubishi Electric Automation MC-WorX 8.x ActiveX Control Remote Code Execution
high
72703StruxureWare SCADA Expert ClearSCADA Unspecified Vulnerability
medium
72702StruxureWare SCADA Expert ClearSCADA Detection
info
72707Mitsubishi Electric Automation MC-WorX Suite Detection
info
725583S CoDeSys Runtime Toolkit NULL Pointer Dereference (uncredentialed check)
medium
725573S CoDeSys Runtime Toolkit NULL Pointer Dereference (credentialed check)
medium
725563S CODESYS Development System V2 Installed (Windows)
info
72486Cogent DataHub < 7.3.4 Malformed POST Request Buffer Overflow RCE
high
72620TURCK BL20/BL67 Hardcoded Admin Account
critical
72201StruxureWare SCADA Expert ClearSCADA < 2013 R2 Remote DoS
medium
72107Ecava IntegraXor < 4.1.4369 Project Directory Information Disclosure
medium
72108Ecava IntegraXor < 4.1.4390 Buffer Overflow
high
70921Schneider Electric Accutech Manager 'RFManagerService' SQL Injection
critical
70760Schneider Electric InduSoft Web Studio Arbitrary Script Execution
critical
70592KEPServerEX < 5.12.140.0 Denial of Service
high
70591KEPServerEX Detection
info
70558ClearSCADA Web Server Detection
info
70556Cogent DataHub Tunnel/Mirror Service Detection
info
70557Cogent DataHub < 7.3.0 Multiple Vulnerabilities
high
70531Siemens SCALANCE X-200 Web Session Hijacking
high
70530Siemens SCALANCE X-200 Authentication Bypass
critical
70559ClearSCADA Web Server Remote Denial of Service
high