| CVE-2011-4510 |
medium |
— |
4.3 |
|
|
siemens |
15y ago |
Cross-site scripting (XSS) vulnerability in the HMI web server in Siemens WinCC flexible 2004, 2005, 2007, and 2008 before SP3; WinCC V11 (aka TIA portal) before SP2 Update 1; the TP, OP, MP, Comfort… |
| CVE-2011-4509 |
critical |
— |
10.0 |
|
|
siemens |
15y ago |
The HMI web server in Siemens WinCC flexible 2004, 2005, 2007, and 2008; WinCC V11 (aka TIA portal); the TP, OP, MP, Comfort Panels, and Mobile Panels SIMATIC HMI panels; WinCC V11 Runtime Advanced; … |
| CVE-2011-4508 |
critical |
— |
9.3 |
|
|
siemens |
15y ago |
The HMI web server in Siemens WinCC flexible 2004, 2005, 2007, and 2008 before SP3; WinCC V11 (aka TIA portal) before SP2 Update 1; the TP, OP, MP, Comfort Panels, and Mobile Panels SIMATIC HMI panel… |
| CVE-2011-4532 |
medium |
— |
6.0 |
EXP |
|
siemens |
15y ago |
Absolute path traversal vulnerability in the ALMListView.ALMListCtrl ActiveX control in almaxcx.dll in the graphical user interface in Siemens Automation License Manager (ALM) 2.0 through 5.1+SP1+Upd… |
| CVE-2011-4531 |
medium |
— |
6.0 |
EXP |
|
siemens |
15y ago |
Siemens Automation License Manager (ALM) 4.0 through 5.1+SP1+Upd1 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via crafted content in a (1) get_tar… |
| CVE-2011-4530 |
medium |
— |
6.0 |
EXP |
|
siemens |
15y ago |
Siemens Automation License Manager (ALM) 4.0 through 5.1+SP1+Upd1 does not properly copy fields obtained from clients, which allows remote attackers to cause a denial of service (exception and daemon… |
| CVE-2011-4056 |
medium |
— |
5.8 |
|
|
siemens |
15y ago |
An unspecified ActiveX control in ActBar.ocx in Siemens Tecnomatix FactoryLink 6.6.1 (aka 6.6 SP1), 7.5.217 (aka 7.5 SP2), and 8.0.2.54 allows remote attackers to create or overwrite arbitrary files … |
| CVE-2011-4055 |
critical |
— |
9.3 |
|
|
siemens |
15y ago |
Buffer overflow in the WebClient ActiveX control in Siemens Tecnomatix FactoryLink 6.6.1 (aka 6.6 SP1), 7.5.217 (aka 7.5 SP2), and 8.0.2.54 allows remote attackers to execute arbitrary code via a lon… |
| CVE-2011-3321 |
critical |
— |
9.3 |
|
|
siemens |
15y ago |
Heap-based buffer overflow in the Siemens WinCC Runtime Advanced Loader, as used in SIMATIC WinCC flexible Runtime and SIMATIC WinCC (TIA Portal) Runtime Advanced, allows remote attackers to cause a … |