SCADA Family for Nessus

IDNameSeverity
192107Milesight MilesightVPN Authentication Bypass (CVE-2023-22844)
critical
192106Milesight MilesightVPN Detection
info
191096Rockwell FactoryTalk Services Platform < 2.74 Privilege Escalation
critical
190220Delta Electronics DIAEnergie Hard-coded JWT Key (CVE-2022-3214)
critical
189991Rockwell FactoryTalk Services Platform < 6.40 Authentication Bypass
critical
189747CyberPower PowerPanel Enterprise Detection
info
189746CyberPower PowerPanel Enterprise Authentication Bypass (CVE-2023-3265)
critical
189290Rockwell FactoryTalk Activation Manager < 4.02 Buffer Overflow
critical
189289Rockwell FactoryTalk Activation Manager < 5.01 RCE
critical
189288Rockwell FactoryTalk Activation Manager < 4.02 XSS
medium
189287Rockwell FactoryTalk Activation Manager Installed (Windows)
info
189286Rockwell FactoryTalk Activation Manager < 4.01.00 Privilege Escalation
high
189258Rockwell FactoryTalk Services Platform 2.74 Authentication Bypass
high
187749Rockwell FactoryTalk Services Platform < 3.00 DoS
high
187748Rockwell FactoryTalk Services Platform < 6.20 Deserialization
critical
187747Rockwell FactoryTalk Services Platform Installed (Windows)
info
187746Rockwell FactoryTalk Services Platform < 6.20 Privilege Escalation
high
183240LG LED Assistant Detection
info
183239LG LED Assistant Path Traversal (CVE-2023-4613)
critical
182188Control iD iDSecure Hard-coded JWT Key Authentication Bypass (CVE-2023-33371)
critical
182187Control iD iDSecure Detection
info
180191Rockwell Automation ThinManager ThinServer Path Traversal File Upload (CVE-2023-2917)
critical
180180CODESYS Development System Installed (Windows)
info
178747CyberPower PowerPanel Business Management Use of Default Password (CVE-2023-25131)
critical
178746CyberPower PowerPanel Business Management Detection
info
177893Rockwell Automation ControlLogix Communications Modules Multiple Vulnerabilities
critical
177892Rockwell Automation ControlLogix Service Detection
info
176666Moxa MXsecurity Series Detection
info
176665Moxa MXsecurity Series Hard-coded JWT Key Authentication Bypass (CVE-2023-33236)
critical
176356Schneider Electric APC Easy UPS Online Monitoring Software Unauthenticated RMI Calls (CVE-2023-28411)
critical
174624Siemens SIMATIC TIA Portal Path Traversal (SSA-116924)
high
174566RoboDK < 5.5.4 Incorrect Permission Assignment
high
174565RoboDK Installed (Windows)
info
174122Contec CONPROSYS HMI System (CHS) SQL Injection (CVE-2023-1658)
high
173829Delta Electronics InfraSuite Device Master Gateway Deserialization of Untrusted Data (CVE-2023-1133)
critical
173823Rockwell Automation ThinManager ThinServer Detection
info
173822Rockwell Automation ThinManager ThinServer Path Traversal File Upload (CVE-2023-27855)
critical
172392Contec CONPROSYS HMI System (CHS) Detection
info
172391Contec CONPROSYS HMI System (CHS) OS Command Injection (CVE-2022-44456)
critical
170034Schneider Electric APC Easy UPS Online Monitoring Software Detection
info
170033Schneider Electric APC Easy UPS Online Monitoring Software Missing Authentication (CVE-2022-42970)
critical
170026Siemens Automation License Manager 5.x < 6.0 SP9 Upd4 Multiple Vulnerabilities (SSA-476715)
critical
169462Advantech iView ConfigurationServlet SQLi (CVE-2022-3323)
high
168263Delta Electronics InfraSuite Device Master Gateway Detection
info
168262Delta Electronics InfraSuite Device Master Gateway Information Disclosure (CVE-2022-41629)
critical
165703Delta Electronics DIALink Detection
info
165702Delta Electronics DIALink Known Cryptographic Key Authentication Bypass (CVE-2022-2660)
high
165180Delta Electronics DIAEnergie Blind SQLi (CVE-2022-26013)
critical
164696Keysight Technologies Sensor Management Server addLicenseFile Path Traversal (CVE-2022-38129)
critical
164195Advantech iView runProViewUpgrade fwfilename Command Injection (CVE-2022-2143)
critical