NA - CVE-2023-46098 - A vulnerability has been identified in SIMATIC...
A vulnerability has been identified in SIMATIC PCS neo (All versions < V4.1). When accessing the Information Server from affected products, the products use an overly permissive CORS policy. This...
NA - CVE-2023-46099 - A vulnerability has been identified in SIMATIC...
A vulnerability has been identified in SIMATIC PCS neo (All versions < V4.1). There is a stored cross-site scripting vulnerability in the Administration Console of the affected product, that could...
NA - CVE-2023-46590 - A vulnerability has been identified in Siemens...
A vulnerability has been identified in Siemens OPC UA Modelling Editor (SiOME) (All versions < V2.8). Affected products suffer from a XML external entity (XXE) injection vulnerability. This...
NA - CVE-2023-46601 - A vulnerability has been identified in COMOS...
A vulnerability has been identified in COMOS (All versions). The affected application lacks proper access controls in making the SQLServer connection. This could allow an attacker to query the...
NA - CVE-2023-6111 - A use-after-free vulnerability in the Linux...
A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The function nft_trans_gc_catchall did not remove...
NA - CVE-2023-45684 - Northern.tech CFEngine Enterprise before 3.21.3...
Northern.tech CFEngine Enterprise before 3.21.3 allows SQL Injection. The fixed versions are 3.18.6 and 3.21.3. The earliest affected version is 3.6.0. The issue is in the Mission Portal login page...