|
248631
|
7.5 |
HIGH
Network
|
sierra_wireless
|
airlink_raven_xe_firmware airlink_raven_xt_firmware
|
An Insufficiently Protected Credentials issue was discovered in Sierra Wireless AirLink Raven XE, all versions prior to 4.0.14, and AirLink Raven XT, all versions prior to 4.0.11. Sensitive informati…
|
CWE-200
Information Exposure
|
CVE-2017-6046
|
2024-11-21 12:28 |
2017-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248632
|
9.8 |
CRITICAL
Network
|
sierra_wireless
|
airlink_raven_xe_firmware airlink_raven_xt_firmware
|
An Improper Authorization issue was discovered in Sierra Wireless AirLink Raven XE, all versions prior to 4.0.14, and AirLink Raven XT, all versions prior to 4.0.11. Several files and directories can…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2017-6044
|
2024-11-21 12:28 |
2017-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248633
|
8.8 |
HIGH
Network
|
sierra_wireless
|
airlink_raven_xe_firmware airlink_raven_xt_firmware
|
A Cross-Site Request Forgery issue was discovered in Sierra Wireless AirLink Raven XE, all versions prior to 4.0.14, and AirLink Raven XT, all versions prior to 4.0.11. Affected devices do not verify…
|
CWE-352
Origin Validation Error
|
CVE-2017-6042
|
2024-11-21 12:28 |
2017-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248634
|
5.3 |
MEDIUM
Network
|
belden_hirschmann
|
gecko_lite_managed_switch_firmware
|
An Information Exposure issue was discovered in Belden Hirschmann GECKO Lite Managed switch, Version 2.0.00 and prior versions. Non-sensitive information can be obtained anonymously.
|
CWE-200
Information Exposure
|
CVE-2017-6040
|
2024-11-21 12:28 |
2017-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248635
|
7.1 |
HIGH
Network
|
belden_hirschmann
|
gecko_lite_managed_switch_firmware
|
A Cross-Site Request Forgery issue was discovered in Belden Hirschmann GECKO Lite Managed switch, Version 2.0.00 and prior versions. The web application does not sufficiently verify that requests wer…
|
CWE-352
Origin Validation Error
|
CVE-2017-6038
|
2024-11-21 12:28 |
2017-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248636
|
9.8 |
CRITICAL
Network
|
marel
|
a320_firmware a325_firmware a371_firmware a520_master_firmware a520_slave_firmware a530_firmware a542_firmware a571_firmware check_bin_grader_firmware flowlineqc_t376_firmw…
|
An Unrestricted Upload issue was discovered in Marel Food Processing Systems M3000 terminal associated with the following systems: A320, A325, A371, A520 Master, A520 Slave, A530, A542, A571, Check B…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2017-6041
|
2024-11-21 12:28 |
2017-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248637
|
6.5 |
MEDIUM
Network
|
belden_hirschmann
|
gecko_lite_managed_switch_firmware
|
A Server-Side Request Forgery issue was discovered in Belden Hirschmann GECKO Lite Managed switch, Version 2.0.00 and prior versions. The web server receives a request, but does not sufficiently veri…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2017-6036
|
2024-11-21 12:28 |
2017-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248638
|
9.8 |
CRITICAL
Network
|
schneider-electric
|
modbus_firmware
|
An Authentication Bypass by Capture-Replay issue was discovered in Schneider Electric Modicon Modbus Protocol. Sensitive information is transmitted in cleartext in the Modicon Modbus protocol, which …
|
CWE-287
Improper Authentication
|
CVE-2017-6034
|
2024-11-21 12:28 |
2017-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248639
|
5.3 |
MEDIUM
Network
|
schneider-electric
|
modbus_firmware
|
A Violation of Secure Design Principles issue was discovered in Schneider Electric Modicon Modbus Protocol. The Modicon Modbus protocol has a session-related weakness making it susceptible to brute-f…
|
CWE-358
Improperly Implemented Security Check for Standard
|
CVE-2017-6032
|
2024-11-21 12:28 |
2017-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248640
|
9.8 |
CRITICAL
Network
|
schneider-electric
|
modicon_m241_firmware modicon_m251_firmware
|
An Insufficiently Protected Credentials issue was discovered in Schneider Electric Modicon PLCs Modicon M241, all firmware versions, and Modicon M251, all firmware versions. Log-in credentials are se…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2017-6028
|
2024-11-21 12:28 |
2017-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|