Vulnerabilities

Summary — last 7 days

New vulnerabilities2,769▼ 305 vs. last week
Critical / high1,294▼ 203 vs. last week
New active exploitation (KEV)8→ no change vs. last week
Unscored (no CVSS)207▼ 114 vs. last week
–

3 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
ModifiedMedium (5.3)0.18%—Schneider-electric Pro-face Gp-pro EX8/9/20236/17/2026
A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could cause memory corruption when an authenticated user opens a tampered log file from GP-Pro EX.
ModifiedHigh (8.8)2.2%—Schneider-electric Pro-face Gp-pro EX12/24/20186/17/2026
An Improper Input Validation vulnerability exists in Pro-Face GP-Pro EX v4.08 and previous versions which could cause the execution arbitrary executable when GP-Pro EX is launched.
ModifiedHigh (7.8)0.38%—Schneider-electric Pro-face GP PRO EX9/26/20176/17/2026
A vulnerability exists in Schneider Electric's Pro-Face GP Pro EX version 4.07.000 that allows an attacker to execute arbitrary code. Malicious code installation requires an access to the computer. By placing a specific DLL/OCX file, an attacker is able to force the process to load arbitrary DLL and execute arbitrary…
Orbitaley — Vulnerabilities