Security
Headlines
HeadlinesLatestCVEs

Source

us-cert

Fuji Electric Tellus Lite V-Simulator and V-Server Lite

This advisory contains mitigations for Stack-based Buffer Overflow, Out-of-bounds Write, Untrusted Pointer Dereference, Out-of-bounds Read, Access of Uninitialized Pointer, and Heap-based Buffer Overflow vulnerabilities in Fuji Electric Tellus Lite V-Simulator and V-Server Lite remote monitoring and operation software.

us-cert
#vulnerability
B. Braun Infusomat Space Large Volume Pump

This advisory contains mitigation for Unrestricted Upload of File with Dangerous Type, Cleartext Transmission of Sensitive Information, Missing Authentication for Critical Function, Insufficient Verification of Data Authenticity, and Improper Input Validation vulnerabilities in the B. Braun Infusomat Space Large Volume Pump.

ICONICS GENESIS64 and Mitsubishi Electric MC Works64

This advisory contains mitigations for Out-of-bounds Read, and Out-of-bounds Write vulnerabilities in ICONICS GENESIS64 and Mitsubishi Electric MC Works64 HMI SCADA systems.

Delta Electronics DIALink

This advisory contains mitigations for Cleartext Transmission of Sensitive Information, Cross-site Scripting, Improper Neutralization of Formula Elements in a CSV File, Cleartext Storage of Sensitive Information, Uncontrolled Search Path Element, and Incorrect Default Permissions vulnerabilities in the Delta Electronics DIALink industrial automation server.

ICONICS GENESIS64 and Mitsubishi Electric MC Works64 OPC UA

This advisory contains mitigations for an Uncontrolled Recursion vulnerability in ICONICS GENESIS64, Mitsubishi Electric MC Works64 third-party OPC Foundation products.

AUVESY Versiondog

This advisory contains mitigations for numerous vulnerabilities in AUVESY Versiondog data management software for automated production.

Trane HVAC Systems Controls

This advisory contains mitigations for a Cross-site Scripting vulnerability in Trane Tracer SC HVAC building automation products.

Schneider Electric CNM

This advisory contains mitigations for an proper Privilege Management vulnerability in Schneider Electric ConneXium Network Manager (CNM) software.

Uffizio GPS Tracker

This advisory contains mitigations for mproper Access Control, Unrestricted Upload of File with Dangerous Type, Open Redirect, Cross-site Scripting, and Cross-site Request Forgery vulnerabilities in Uffizio GPS Tracker software.

Mitsubishi Electric MELSEC iQ-R Series

This advisory contains mitigations for an Authorization Bypass Through User-controlled Key vulnerability in the Mitsubishi Electric MELSEC iQ-R Series CPU Module.