Known vulnerabilities in SCADA Webserver
Vendor:
iniNet Solutions GmbH
Software:
SCADA Webserver
Software CPE:
cpe:2.3:a:ininet_solutions_gmbh:scada_webserver:*:*:*:*:*:*:*:*
Website:
https://spidercontrol.net/
Total vulnerabilities:
4
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.4
Breakdown by Severity Chart
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU16240 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2018-18991 |
CWE-79 | Low | 2.03.0001 | 04.12.2018 |
SB2018120504 |
||
| #VU8577 - Improper Authentication CVE-2017-13995 |
CWE-287 | Low | - | 22.09.2017 |
SB2017092205 |
||
| #VU8167 - Improper Privilege Management CVE-2017-12728 |
CWE-269 | Low | - | 08.09.2017 |
SB2017090802 |
||
| #VU8000 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2017-12694 |
CWE-22 | Low | - | 22.08.2017 |
SB2017082303 |