Loading HuntDB...

SOCOMEC

5 Products 10 CVEs

CVE Severity Distribution (All Time)

Critical
1
High
5
Medium
4
Low
0

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 0 CVEs

Recent CVEs

CVE-2024-4601 MEDIUM 1 year, 2 months ago

An incorrect authentication vulnerability has been found in Socomec Net Vision affecting version 7.20. This vulnerability allows an attacker to perfo…

CVE-2024-4600 HIGH 1 year, 2 months ago

Cross-Site Request Forgery vulnerability in Socomec Net Vision, version 7.20. This vulnerability could allow an attacker to trick registered users in…

CVE-2023-38255 MEDIUM 1 year, 10 months ago

A potential attacker with or without (cookie theft) access to the device would be able to include malicious code (XSS) when uploadin…

CVE-2023-38582 MEDIUM 1 year, 10 months ago

Persistent cross-site scripting (XSS) in the web application of MOD3GP-SY-120K allows an authenticated remote attacker to introduce arbitrar…

CVE-2023-39446 HIGH 1 year, 10 months ago

Thanks to the weaknesses that the web application has at the user management level, an attacker could obtain the information from the headers …

CVE-2023-39452 HIGH 1 year, 10 months ago

The web application that owns the device clearly stores the credentials within the user management section. Obtaining this information…

CVE-2023-40221 HIGH 1 year, 10 months ago

The absence of filters when loading some sections in the web application of the vulnerable device allows potential attackers to inject m…

CVE-2023-41084 CRITICAL 1 year, 10 months ago

Session management within the web application is incorrect and allows attackers to steal session cookies to perform a multitude of actions…

CVE-2023-41965 HIGH 1 year, 10 months ago

Sending some requests in the web application of the vulnerable device allows information to be obtained due to the lack of security in the authentica…

CVE-2023-0356 MEDIUM 2 years, 6 months ago

SOCOMEC MODULYS GP Netvision versions 7.20 and prior lack strong encryption for credentials on HTTP connections, which could result in threat actors…