Loading HuntDB...

B&R Industrial Automation

13 Products 23 CVEs

CVE Severity Distribution (All Time)

Critical
4
High
11
Medium
3
Low
0

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 0 CVEs

Recent CVEs

View all
CVE-2024-5624 UNKNOWN 1 year ago

Reflected Cross-Site Scripting (XSS) in Shift Logbook application of B&R APROL <= R 4.4-00P3 may allow a network-based attacker to execute arbitrary …

CVE-2024-5623 UNKNOWN 1 year ago

An untrusted search path vulnerability in B&R APROL <= R 4.4-00P3 may be used by an authenticated local attacker to get other users to execute arbitr…

CVE-2024-5622 UNKNOWN 1 year ago

An untrusted search path vulnerability in the AprolConfigureCCServices of B&R APROL <= R 4.2.-07P3 and <= R 4.4-00P3 may allow an authenticated local…

CVE-2024-5801 UNKNOWN 1 year, 1 month ago

Enabled IP Forwarding feature in B&R Automation Runtime versions before 6.0.2 may allow remote attack-ers to compromise network security by routing I…

CVE-2024-5800 UNKNOWN 1 year, 1 month ago

Diffie-Hellman groups with insufficient strength are used in the SSL/TLS stack of B&R Automation Runtime versions before 6.0.2, allowing a network at…

CVE-2021-22280 HIGH 1 year, 3 months ago

Improper DLL loading algorithms in B&R Automation Studio versions >=4.0 and <4.12 may allow an authenticated local attacker to execute code in the co…

CVE-2024-2637 HIGH 1 year, 3 months ago

An Uncontrolled Search Path Element vulnerability in B&R Industrial Automation Scene Viewer, B&R Industrial Automation Automation Runtime, B&R Indust…

CVE-2024-0220 HIGH 1 year, 6 months ago

B&R Automation Studio Upgrade Service and B&R Technology Guarding use insufficient cryptography for communication to the upgrade and the licensing se…

CVE-2023-6028 MEDIUM 1 year, 7 months ago

A reflected cross-site scripting (XSS) vulnerability exists in the SVG version of System Diagnostics Manager of B&R Automation Runtime versions <= G4…

CVE-2024-0323 CRITICAL 1 year, 7 months ago

The FTP server used on the B&R Automation Runtime supports unsecure encryption mechanisms, such as SSLv3, TLSv1.0 and TLS1.1. An network-based attack…