VYPR

EY-WS505F0x0 moduWeb Vision

by Sauter Controls

CVEs (3)

  • CVE-2015-7915CriFeb 6, 2016
    risk 0.64cvss 9.8epss 0.02

    Sauter EY-WS505F0x0 moduWeb Vision before 1.6.0 sends cleartext credentials, which allows remote attackers to obtain sensitive information by sniffing the network.

  • CVE-2015-7914HigFeb 6, 2016
    risk 0.53cvss 8.1epss 0.02

    Sauter EY-WS505F0x0 moduWeb Vision before 1.6.0 allows remote attackers to bypass authentication by leveraging knowledge of a password hash without knowledge of the associated password.

  • CVE-2015-7916MedFeb 6, 2016
    risk 0.42cvss 6.5epss 0.01

    Cross-site scripting (XSS) vulnerability in Sauter EY-WS505F0x0 moduWeb Vision before 1.6.0 allows remote authenticated users to inject arbitrary web script or HTML via a crafted query.