Emerson
Emerson X-stream Enhanced Xegk Firmware: vulnerabilidades y CVE
Emerson X-stream Enhanced Xegk Firmware tiene 7 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE7
Últimos 12 meses0
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2021-27467 | Media (6.1) | 0.70% | — | 20 may 2021 | A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The affected product’s web interface allows an attacker to route click or keystroke to another page provided by the… |
| CVE-2021-27465 | Media (6.1) | 0.64% | — | 20 may 2021 | A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The affected applications do not validate webpage input, which could allow an attacker to inject arbitrary HTML code into… |
| CVE-2021-27463 | Media (5.3) | 0.90% | — | 20 may 2021 | A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The affected applications utilize persistent cookies where the session cookie attribute is not properly invalidated,… |
| CVE-2021-27461 | Alta (7.5) | 1.4% | — | 20 may 2021 | A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The affected webserver applications allow access to stored data that can be obtained by using specially crafted URLs. |
| CVE-2021-27459 | Crítica (9.8) | 1.8% | — | 20 may 2021 | A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The webserver of the affected products allows unvalidated files to be uploaded, which an attacker could utilize to execute… |
| CVE-2021-27457 | Alta (7.5) | 0.45% | — | 20 may 2021 | A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The affected products utilize a weak encryption algorithm for storage of sensitive data, which may allow an attacker to… |
| CVE-2020-27254 | Alta (7.5) | 1.3% | — | 21 dic 2020 | Emerson Rosemount X-STREAM Gas AnalyzerX-STREAM enhanced XEGP, XEGK, XEFD, XEXF – all revisions, The affected products are vulnerable to improper authentication for accessing log and backup data, which could allow an… |
Otros productos de Emerson
Deltav · 15Wireless 1420 Gateway Firmware · 8X-stream Enhanced Xefd Firmware · 7Wireless 1410 Gateway Firmware · 7X-stream Enhanced Xegp Firmware · 7X-stream Enhanced Xexf Firmware · 7Wireless 1410d Gateway Firmware · 6Valvelink · 6Se4801t0x Redundant Wireless I/O Card Firmware · 6Deltav Workstation · 6Deltav Distributed Control System SQ Controller Firmware · 5Openenterprise Scada Server · 5