Schneider-Electric Somachine Hvac vulnerabilities
3 known vulnerabilities affecting schneider-electric/somachine_hvac.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH3
Vulnerabilities
Page 1 of 1
CVE-2022-2988HIGHCVSS 7.5fixed in 2.1.02023-01-30
CVE-2022-2988 [MEDIUM] CWE-787 CVE-2022-2988: A CWE-787: Out-of-bounds Write vulnerability exists that could cause sensitive information leakage w
A CWE-787: Out-of-bounds Write vulnerability exists that could cause sensitive information leakage when accessing a malicious web page from the commissioning software. Affected Products: SoMachine HVAC (Versions prior to V2.1.0), EcoStruxure Machine Expert – HVAC (Versions prior to V1.4.0)
nvd
CVE-2019-6826HIGHCVSS 7.8≤ 2.4.12019-09-17
CVE-2019-6826 [HIGH] CWE-426 CVE-2019-6826: A CWE-426: Untrusted Search Path vulnerability exists in SoMachine HVAC v2.4.1 and earlier versions,
A CWE-426: Untrusted Search Path vulnerability exists in SoMachine HVAC v2.4.1 and earlier versions, which could cause arbitrary code execution on the system running SoMachine HVAC when a malicious DLL library is loaded by the product.
nvd
CVE-2017-7965HIGHCVSS 7.3v2.1.02017-06-07
CVE-2017-7965 [HIGH] CWE-119 CVE-2017-7965: A buffer overflow vulnerability exists in Programming Software executable AlTracePrint.exe, in Schne
A buffer overflow vulnerability exists in Programming Software executable AlTracePrint.exe, in Schneider Electric's SoMachine HVAC v2.1.0 for Modicon M171/M172 Controller.
nvd