Skip to main content

Vendor/product archive

emerson / openenterprise_scada_server CVEs

Beta · best-effort

5 CVEs tagged to emerson / openenterprise_scada_server2 Critical, 1 High, 1 Medium, 1 Low, 0 Unrated.

CVE-2020-16235

Published May 19, 2022

Inadequate encryption may allow the credentials used by Emerson OpenEnterprise, up through version 3.3.5, to access field devices and external systems to be obtained.

CVSS 3.8 · Low
Vendor/product tagsBeta · best-effort

CVE-2020-10640

Published Feb 24, 2022

Emerson OpenEnterprise versions through 3.3.4 may allow an attacker to run an arbitrary commands with system privileges or perform remote code execution via a specific communicati…

CVSS 10.0 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2020-10632

Published Feb 24, 2022

Inadequate folder security permissions in Emerson OpenEnterprise versions through 3.3.4 may allow modification of important configuration files, which could cause the system to fa…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-6970

Published Feb 19, 2020

A Heap-based Buffer Overflow was found in Emerson OpenEnterprise SCADA Server 2.83 (if Modbus or ROC Interfaces have been installed and are in use) and all versions of OpenEnterpr…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1