VYPR
Vendor

Spidercontrol

Sign in to watch
Products
4
CVEs
4
Across products
4
Status
Private

Products

4

Recent CVEs

4
CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2017-13995Cri0.6510.00.02Oct 5, 2017An Improper Authentication issue was discovered in iniNet Solutions iniNet Webserver, all versions prior to V2.02.0100. The webserver does not properly authenticate users, which may allow a malicious attacker to access sensitive information such as HMI pages or modify PLC variables.
CVE-2017-12707Cri0.649.80.01Aug 25, 2017A Stack-based Buffer Overflow issue was discovered in SpiderControl SCADA MicroBrowser Versions 1.6.30.144 and prior. Opening a maliciously crafted html file may cause a stack overflow.
CVE-2017-12728Hig0.517.80.00Oct 5, 2017An Improper Privilege Management issue was discovered in SpiderControl SCADA Web Server Version 2.02.0007 and prior. Authenticated, non-administrative local users are able to alter service executables with escalated privileges, which could allow an attacker to execute arbitrary code under the context of the current system services.
CVE-2017-12694Hig0.497.50.05Aug 25, 2017A Directory Traversal issue was discovered in SpiderControl SCADA Web Server. An attacker may be able to use a simple GET request to perform a directory traversal into system files.