Known vulnerabilities in LAquis SCADA

Software: LAquis SCADA
Software CPE: cpe:2.3:a:leão_consultoria_e_desenvolvimento_de_sistemas:laquis_scada:*:*:*:*:*:*:*:*
Total vulnerabilities: 27
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting LAquis SCADA LAquis SCADA is affected by 27 known vulnerabilities: 12 high, 2 medium, 13 low Critical High Medium Low

Vulnerabilities (27)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU99232 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-9414
CWE-79 Low
No
No
4.7.1.611 22.10.2024 SB20241022348
#VU89784 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-5040
CWE-22 High
No
No
4.7.1.371 23.05.2024 SB2024052319
#VU55385 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-32989
CWE-79 Low
No
No
4.3.1.1079 28.07.2021 SB2021072805
#VU47632 - Out-of-bounds read
CVE-2020-25188
CWE-125 Medium
No
No
4.3.1.870 14.10.2020 SB2020101403
#VU27428 - Improper input validation
CVE-2020-10622
CWE-20 Medium
No
No
- 29.04.2020 -
#VU27427 - Exposure of sensitive information to an unauthorized actor
CVE-2020-10618
CWE-200 Low
No
No
- 29.04.2020 -
#VU20360 - Out-of-bounds write
CVE-2019-6536
CWE-787 High
No
No
4.3.1.71 22.08.2019 SB2019031414
#VU19945 - Out-of-bounds read
CVE-2019-10994
CWE-125 Low
No
No
4.3.1.323 06.08.2019 SB2019082108
#VU19944 - Type confusion
CVE-2019-10980
CWE-843 Low
No
No
4.3.1.323 06.08.2019 SB2019082108
#VU17011 - Authentication Bypass Using an Alternate Path or Channel
CVE-2018-19000
CWE-288 Low
No
No
4.1.0.4150 16.01.2019 SB2019011601
#VU17010 - Use of Hard-coded Credentials
CVE-2018-18998
CWE-798 Low
No
No
4.1.0.4150 16.01.2019 SB2019011601
#VU17009 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2018-18996
CWE-74 High
No
No
4.1.0.4150 16.01.2019 SB2019011601
#VU17008 - Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CVE-2018-18992
CWE-74 High
No
No
4.1.0.4150 16.01.2019 SB2019011601
#VU17007 - Relative Path Traversal
CVE-2018-18990
CWE-23 Low
No
No
4.1.0.4150 16.01.2019 SB2019011601
#VU17006 - Out-of-bounds write
CVE-2018-18986
CWE-787 High
No
No
4.1.0.4150 16.01.2019 SB2019011601
#VU17005 - Untrusted Pointer Dereference
CVE-2018-19029
CWE-822 High
No
No
4.1.0.4150 16.01.2019 SB2019011601
#VU17004 - Out-of-bounds read
CVE-2018-18994
CWE-125 Low
No
No
4.1.0.4150 16.01.2019 SB2019011601
#VU17003 - Improper Control of Generation of Code ('Code Injection')
CVE-2018-19002
CWE-94 High
No
No
4.1.0.4150 16.01.2019 SB2019011601
#VU17002 - Out-of-bounds read
CVE-2018-19004
CWE-125 Low
No
No
4.1.0.4150 16.01.2019 SB2019011601
#VU17001 - Improper input validation
CVE-2018-18988
CWE-20 Low
No
No
4.1.0.4150 15.01.2019 SB2019011601


Showing elements 1 - 20 out of 27