VYPR
Vendor

Valmet

Products
4
CVEs
3
Across products
5
Status
Private

Products

4

Recent CVEs

3
  • CVE-2021-26726HigFeb 16, 2022
    risk 0.57cvss 8.8epss 0.01

    A remote code execution vulnerability affecting a Valmet DNA service listening on TCP port 1517, allows an attacker to execute commands with SYSTEM privileges This issue affects: Valmet DNA versions from Collection 2012 until Collection 2021.

  • CVE-2025-15577HigFeb 12, 2026
    risk 0.49cvss 7.5epss 0.01

    An unauthenticated attacker can exploit this vulnerability by manipulating URL to achieve arbitrary file read access.This issue affects Valmet DNA Web Tools: C2022 and older.

  • CVE-2025-0417HigApr 1, 2025
    risk 0.46cvss epss 0.00

    Lack of protection against brute force attacks in Valmet DNA visualization in DNA Operate. The possibility to make an arbitrary number of login attempts without any rate limit gives an attacker an increased chance of guessing passwords and then performing switching operations.