RSS   Podatności dla
'Intelligent platforms proficy historian'
   RSS

2012-07-04
 
CVE-2012-2516

CWE-78
 

 
An ActiveX control in KeyHelp.ocx in KeyWorks KeyHelp Module (aka the HTML Help component), as used in GE Intelligent Platforms Proficy Historian 3.1, 3.5, 4.0, and 4.5; Proficy HMI/SCADA iFIX 5.0 and 5.1; Proficy Pulse 1.0; Proficy Batch Execution 5.6; SI7 I/O Driver 7.20 through 7.42; and other products, allows remote attackers to execute arbitrary commands via crafted input, related to a "command injection vulnerability."

 
 
CVE-2012-2515

CWE-119
 

 
Multiple stack-based buffer overflows in the KeyHelp.KeyCtrl.1 ActiveX control in KeyHelp.ocx 1.2.312 in KeyWorks KeyHelp Module (aka the HTML Help component), as used in EMC Documentum ApplicationXtender Desktop 5.4; EMC Captiva Quickscan Pro 4.6 SP1; GE Intelligent Platforms Proficy Historian 3.1, 3.5, 4.0, and 4.5; GE Intelligent Platforms Proficy HMI/SCADA iFIX 5.0 and 5.1; GE Intelligent Platforms Proficy Pulse 1.0; GE Intelligent Platforms Proficy Batch Execution 5.6; GE Intelligent Platforms SI7 I/O Driver 7.20 through 7.42; and other products, allow remote attackers to execute arbitrary code via a long string in the second argument to the (1) JumpMappedID or (2) JumpURL method.

 
2012-03-15
 
CVE-2012-0229

CWE-119
 

 
The Data Archiver service in GE Intelligent Platforms Proficy Historian 4.5 and earlier allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a crafted session on TCP port 14000 to (1) ihDataArchiver.exe or (2) ihDataArchiver_x64.exe.

 
2011-11-02
 
CVE-2011-3320

CWE-79
 

 
Cross-site scripting (XSS) vulnerability in the Web Administrator component in GE Intelligent Platforms Proficy Historian 4.x and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.

 
 
CVE-2011-1919

CWE-119
 

 
Multiple stack-based buffer overflows in GE Intelligent Platforms Proficy Applications before 4.4.1 SIM 101 and 5.x before 5.0 SIM 43 allow remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via crafted TCP message traffic to (1) PRProficyMgr.exe in Proficy Server Manager, (2) PRGateway.exe in Proficy Server Gateway, (3) PRRDS.exe in Proficy Remote Data Service, or (4) PRLicenseMgr.exe in Proficy Server License Manager.

 
 
CVE-2011-1918

CWE-119
 

 
Stack-based buffer overflow in the Data Archiver service in GE Intelligent Platforms Proficy Historian before 3.5 SIM 17 and 4.x before 4.0 SIM 12 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via crafted TCP message traffic.

 

 >>> Vendor: GE 81 Produkty
Communicator
Cimplicity
IFIX
Intelligent platforms proficy historian
Intelligent platforms proficy plant applications
Intelligent platforms proficy real-time information porta
Intelligent platforms proficy hmi%2Fscada ifix
Intelligent platforms proficy batch execution
Intelligent platforms si7 i%2Fo driver
Intelligent platforms proficy pulse
Intelligent platforms proficy hmi/scada ifix
Intelligent platforms si7 i/o driver
Intelligent platforms proficy real-time information portal
Intelligent platforms proficy hmi/scada cimplicity
Intelligent platforms proficy process systems with cimplicity
Intelligent platforms proficy process systems
Intelligent platforms proficy dnp3 i/o driver
Intelligent platforms proficy hmi%2fscada cimplicity
Multilink ml1200
Multilink ml1600
Multilink ml2400
Multilink ml3000
Multilink ml3100
Multilink ml800
Multilink ml810
Multilink ml1200 firmware
Multilink ml1600 firmware
Multilink ml2400 firmware
Multilink ml3000 firmware
Multilink ml3100 firmware
Multilink ml800 firmware
Multilink ml810 firmware
12400 level transmitter device type manager
Svi ii ap positioner device type manager
Vector device type manager
Hydran m2
Healtcare millennium mg firmware
Healtcare millennium myosight firmware
Healtcare millennium nc firmware
Healthcare millennium mg firmware
Healthcare millennium myosight firmware
Healthcare millennium nc firmware
Mds pulsenet
Ups snmp web adapter firmware
Snmp web adapter firmware
Multilink firmware
Bently nevada 3500/22m serial firmware
Bently nevada 3500/22m usb firmware
Multilin sr 489 generator protection relay firmware
Multilin urplus c90 firmware
Multilin urplus d90 firmware
Multilin sr 745 transformer protection relay firmware
Multilin sr 760 feeder protection relay firmware
Multilin universal relay firmware
Multilin sr 369 motor protection relay firmware
Multilin urplus b95 firmware
Multilin sr 750 feeder protection relay firmware
Multilin sr 469 motor protection relay firmware
D60 line distance relay firmware
Gemnet license server
Xeleris
Infinia hawkeye 4 firmware
Centricity pacs ra1000
Pacsystems cpu320 firmware
Pacsystems cru320 firmware
Pacsystems rsti-ep cpe 100 firmware
Pacsystems rx3i cpe305 firmware
Pacsystems rx3i cpe310 firmware
Pacsystems rxi firmware
Rx3i cpe330 firmware
Rx3i cpe 400 firmware
Snmp/web adapter firmware
Ge communicator
Aespire 7100 firmware
Aespire 7900 firmware
Aestiva 7100 firmware
Aestiva 7900 firmware
Mark vie controll system
Mark vie control system
Industrial gateway server
Ur bootloader binary


Copyright 2024, cxsecurity.com

 

Back to Top