Known Vulnerabilities for Symphony Plus Historian by Abb
Listed below are 8 of the newest known vulnerabilities associated with "Symphony Plus Historian" by "Abb".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-24683 json | The affected versions of S+ Operations (version 2.1 SP1 and earlier) used an approach for user authentication which relies on... | 9.8 - CRITICAL | 2020-12-22 | 2021-10-07 |
| CVE-2020-24680 json | In S+ Operations and S+ Historian, the passwords of internal users (not Windows Users) are encrypted but improperly stored in... | 7 - HIGH | 2020-12-22 | 2021-10-07 |
| CVE-2020-24679 json | A S+ Operations and S+ Historian service is subject to a DoS by special crafted messages. An attacker might use this flaw to ... | 9.8 - CRITICAL | 2020-12-22 | 2021-10-07 |
| CVE-2020-24678 json | An authenticated user might execute malicious code under the user context and take control of the system. S+ Operations or S+... | 8.8 - HIGH | 2020-12-22 | 2021-10-07 |
| CVE-2020-24677 json | Vulnerabilities in the S+ Operations and S+ Historian web applications can lead to a possible code execution and privilege es... | 8.8 - HIGH | 2020-12-22 | 2021-10-07 |
| CVE-2020-24675 json | In S+ Operations and S+ History, it is possible that an unauthenticated user could inject values to the Operations History se... | 9.8 - CRITICAL | 2020-12-22 | 2021-10-07 |
| CVE-2020-24674 json | In S+ Operations and S+ Historian, not all client commands correctly check user permission as expected. Authenticated but Una... | 8.8 - HIGH | 2020-12-22 | 2021-10-07 |
| CVE-2020-24673 json | In S+ Operations and S+ Historian, a successful SQL injection exploit can read sensitive data from the database, modify datab... | 9.8 - CRITICAL | 2020-12-22 | 2021-10-07 |