Логотип exploitDog
bind:CVE-2020-25178
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-25178

Количество 3

Количество 3

nvd логотип

CVE-2020-25178

почти 4 года назад

ISaGRAF Workbench communicates with Rockwell Automation ISaGRAF Runtime Versions 4.x and 5.x using TCP/IP. This communication protocol provides various file system operations, as well as the uploading of applications. Data is transferred over this protocol unencrypted, which could allow a remote unauthenticated attacker to upload, read, and delete files.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-9x5p-r7c6-hf92

почти 4 года назад

ISaGRAF Workbench communicates with Rockwell Automation ISaGRAF Runtime Versions 4.x and 5.x using TCP/IP. This communication protocol provides various file system operations, as well as the uploading of applications. Data is transferred over this protocol unencrypted, which could allow a remote unauthenticated attacker to upload, read, and delete files.

CVSS3: 8.8
EPSS: Низкий
fstec логотип

BDU:2023-03539

больше 4 лет назад

Уязвимость реализации протокола связи TCP/IP среды разработки приложений для программируемых логических контроллеров ISaGRAF Workbench, позволяющая нарушителю загружать, читать и удалять файлы

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-25178

ISaGRAF Workbench communicates with Rockwell Automation ISaGRAF Runtime Versions 4.x and 5.x using TCP/IP. This communication protocol provides various file system operations, as well as the uploading of applications. Data is transferred over this protocol unencrypted, which could allow a remote unauthenticated attacker to upload, read, and delete files.

CVSS3: 7.5
0%
Низкий
почти 4 года назад
github логотип
GHSA-9x5p-r7c6-hf92

ISaGRAF Workbench communicates with Rockwell Automation ISaGRAF Runtime Versions 4.x and 5.x using TCP/IP. This communication protocol provides various file system operations, as well as the uploading of applications. Data is transferred over this protocol unencrypted, which could allow a remote unauthenticated attacker to upload, read, and delete files.

CVSS3: 8.8
0%
Низкий
почти 4 года назад
fstec логотип
BDU:2023-03539

Уязвимость реализации протокола связи TCP/IP среды разработки приложений для программируемых логических контроллеров ISaGRAF Workbench, позволяющая нарушителю загружать, читать и удалять файлы

CVSS3: 8.8
0%
Низкий
больше 4 лет назад

Уязвимостей на страницу