Skip to main content

Vendor archive

openautomationsoftware CVEs

Beta · best-effort

21 CVEs tagged to vendor openautomationsoftware2 Critical, 9 High, 8 Medium, 2 Low, 0 Unrated.

CVE-2023-35124

Published Sep 5, 2023

An information disclosure vulnerability exists in the OAS Engine configuration management functionality of Open Automation Software OAS Platform v18.00.0072. A specially crafted s…

CVSS 3.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-34998

Published Sep 5, 2023

An authentication bypass vulnerability exists in the OAS Engine functionality of Open Automation Software OAS Platform v18.00.0072. A specially crafted series of network requests…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-34994

Published Sep 5, 2023

An improper resource allocation vulnerability exists in the OAS Engine configuration management functionality of Open Automation Software OAS Platform v18.00.0072. A specially cra…

CVSS 3.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-34353

Published Sep 5, 2023

An authentication bypass vulnerability exists in the OAS Engine authentication functionality of Open Automation Software OAS Platform v18.00.0072. A specially crafted network snif…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-34317

Published Sep 5, 2023

An improper input validation vulnerability exists in the OAS Engine User Creation functionality of Open Automation Software OAS Platform v18.00.0072. A specially crafted series of…

CVSS 6.5 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-32615

Published Sep 5, 2023

A file write vulnerability exists in the OAS Engine configuration functionality of Open Automation Software OAS Platform v18.00.0072. A specially crafted series of network request…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-32271

Published Sep 5, 2023

An information disclosure vulnerability exists in the OAS Engine configuration management functionality of Open Automation Software OAS Platform v18.00.0072. A specially crafted s…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-31242

Published Sep 5, 2023

An authentication bypass vulnerability exists in the OAS Engine functionality of Open Automation Software OAS Platform v18.00.0072. A specially-crafted series of network requests…

CVSS 8.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2022-27169

Published May 25, 2022

An information disclosure vulnerability exists in the OAS Engine SecureBrowseFile functionality of Open Automation Software OAS Platform V16.00.0112. A specially-crafted network r…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-26833

Published May 25, 2022

An improper authentication vulnerability exists in the REST API functionality of Open Automation Software OAS Platform V16.00.0121. A specially-crafted series of HTTP requests can…

CVSS 9.4 · Critical
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2022-26303

Published May 25, 2022

An external config control vulnerability exists in the OAS Engine SecureAddUser functionality of Open Automation Software OAS Platform V16.00.0112. A specially-crafted series of n…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-26082

Published May 25, 2022

A file write vulnerability exists in the OAS Engine SecureTransferFiles functionality of Open Automation Software OAS Platform V16.00.0112. A specially-crafted series of network r…

CVSS 9.1 · Critical
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2022-26077

Published May 25, 2022

A cleartext transmission of sensitive information vulnerability exists in the OAS Engine configuration communications functionality of Open Automation Software OAS Platform V16.00…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-26067

Published May 25, 2022

An information disclosure vulnerability exists in the OAS Engine SecureTransferFiles functionality of Open Automation Software OAS Platform V16.00.0112. A specially-crafted series…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-26043

Published May 25, 2022

An external config control vulnerability exists in the OAS Engine SecureAddSecurity functionality of Open Automation Software OAS Platform V16.00.0112. A specially-crafted series…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-26026

Published May 25, 2022

A denial of service vulnerability exists in the OAS Engine SecureConfigValues functionality of Open Automation Software OAS Platform V16.00.0112. A specially-crafted network reque…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-21 of 21 CVEsPage 1 of 1