Siemens Pluscontrol 1St Gen vulnerabilities
7 known vulnerabilities affecting siemens/pluscontrol_1st_gen.
Total CVEs
7
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL4HIGH1MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2021-31346CRITICALCVSS 9.1vAll versions2021-11-09
CVE-2021-31346 [HIGH] CWE-1284 CVE-2021-31346: A vulnerability has been identified in Capital Embedded AR Classic 431-422 (All versions), Capital E
A vulnerability has been identified in Capital Embedded AR Classic 431-422 (All versions), Capital Embedded AR Classic R20-11 (All versions < V2303), PLUSCONTROL 1st Gen (All versions), SIMOTICS CONNECT 400 (All versions < V0.5.0.0), SIMOTICS CONNECT 400 (All versions < V1.0.0.0). The total length of an ICMP payload (set in the IP header) is unchecke
cvelistv5nvd
CVE-2021-31889CRITICALCVSS 9.1vAll versions2021-11-09
CVE-2021-31889 [HIGH] CWE-191 CVE-2021-31889: A vulnerability has been identified in Capital Embedded AR Classic 431-422 (All versions), Capital E
A vulnerability has been identified in Capital Embedded AR Classic 431-422 (All versions), Capital Embedded AR Classic R20-11 (All versions < V2303), PLUSCONTROL 1st Gen (All versions), SIMOTICS CONNECT 400 (All versions < V0.5.0.0). Malformed TCP packets with a corrupted SACK option leads to Information Leaks and Denial-of-Service conditions. (FSMD-2
cvelistv5nvd
CVE-2021-31890CRITICALCVSS 9.1vAll versions2021-11-09
CVE-2021-31890 [HIGH] CWE-240 CVE-2021-31890: A vulnerability has been identified in Capital Embedded AR Classic 431-422 (All versions), Capital E
A vulnerability has been identified in Capital Embedded AR Classic 431-422 (All versions), Capital Embedded AR Classic R20-11 (All versions < V2303), PLUSCONTROL 1st Gen (All versions), SIMOTICS CONNECT 400 (All versions < V0.5.0.0), SIMOTICS CONNECT 400 (All versions < V1.0.0.0). The total length of an TCP payload (set in the IP header) is unchecked.
cvelistv5nvd
CVE-2021-31345CRITICALCVSS 9.1vAll versions2021-11-09
CVE-2021-31345 [HIGH] CWE-1284 CVE-2021-31345: A vulnerability has been identified in Capital Embedded AR Classic 431-422 (All versions), Capital E
A vulnerability has been identified in Capital Embedded AR Classic 431-422 (All versions), Capital Embedded AR Classic R20-11 (All versions < V2303), PLUSCONTROL 1st Gen (All versions). The total length of an UDP payload (set in the IP header) is unchecked. This may lead to various side effects, including Information Leak and Denial-of-Service condit
cvelistv5nvd
CVE-2021-31885HIGHCVSS 7.5vAll versions2021-11-09
CVE-2021-31885 [HIGH] CWE-805 CVE-2021-31885: A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC) (P
A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC) (P2 Ethernet) (All versions), APOGEE MEC (PPC) (BACnet) (All versions), APOGEE MEC (PPC) (P2 Ethernet) (All versions), APOGEE PXC Compact (BACnet) (All versions = V2.3 and = V2.3 and = V2.3 and = V2.3 and = V2.3 and = V2.3 and = V2.3 and = V2.3 and = V2.3
cvelistv5nvd
CVE-2021-31344MEDIUMCVSS 6.9vAll versions2021-11-09
CVE-2021-31344 [MEDIUM] CWE-843 CVE-2021-31344: A vulnerability has been identified in Capital Embedded AR Classic 431-422 (All versions), Capital E
A vulnerability has been identified in Capital Embedded AR Classic 431-422 (All versions), Capital Embedded AR Classic R20-11 (All versions < V2303), PLUSCONTROL 1st Gen (All versions), SIMOTICS CONNECT 400 (All versions < V0.5.0.0), SIMOTICS CONNECT 400 (All versions < V1.0.0.0). ICMP echo packets with fake IP options allow sending ICMP echo reply
cvelistv5nvd
CVE-2020-28388MEDIUMCVSS 5.3vAll versions2021-02-09
CVE-2020-28388 [MEDIUM] CWE-342 CVE-2020-28388: A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE P
A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ethernet) (All versions < V2.8.20), APOGEE PXC Modular (BACnet) (All versions < V3.5.5), APOGEE PXC Modular (P2 Ethernet) (All versions < V2.8.20), Nucleus NET (All versions < V5.2), Nucleus ReadyStart V3 (All versions < V2012.12), Nucl
cvelistv5nvd