VYPR

Vendor CVEs

Selinc

All CVEs

56 total · sorted by risk
  • CVE-2023-31166MedMay 10, 2023
    risk 0.27cvss 4.1epss 0.01

    An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in the Schweitzer Engineering Laboratories Real-Time Automation Controller (SEL RTAC) Web Interface could allow a remote authenticated attacker to create folders in arbitrary paths of…

  • CVE-2023-2264MedNov 30, 2023
    risk 0.26cvss 4.0epss 0.00

    An improper input validation vulnerability in the Schweitzer Engineering Laboratories SEL-411L could allow a malicious actor to manipulate authorized users to click on a link that could allow undesired behavior. See product Instruction Manual Appendix A dated 20230830 for…

  • CVE-2023-31152MedMay 10, 2023
    risk 0.26cvss 4.0epss 0.00

    An Authentication Bypass Using an Alternate Path or Channel vulnerability in the Schweitzer Engineering Laboratories Real-Time Automation Controller (SEL RTAC) Web Interface allows Authentication Bypass. See SEL Service Bulletin dated 2022-11-15 for more details.

  • CVE-2013-2798Aug 9, 2013
    risk 0.00cvss epss 0.00

    Schweitzer Engineering Laboratories (SEL) SEL-2241, SEL-3505, and SEL-3530 RTAC master devices allow physically proximate attackers to cause a denial of service (infinite loop) via crafted input over a serial line.

  • CVE-2013-2792Aug 9, 2013
    risk 0.00cvss epss 0.02

    Schweitzer Engineering Laboratories (SEL) SEL-2241, SEL-3505, and SEL-3530 RTAC master devices allow remote attackers to cause a denial of service (infinite loop) via a crafted DNP3 TCP packet.

  • CVE-2013-0665Mar 21, 2013
    risk 0.00cvss epss 0.01

    Schweitzer Engineering Laboratories (SEL) AcSELerator QuickSet before 5.12.0.1 uses weak permissions for its Program Files directory, which allows local users to replace executable files, and consequently gain privileges, via standard filesystem operations.

Page 2 of 2