Known Vulnerabilities for Clearscada by Aveva
Listed below are 9 of the newest known vulnerabilities associated with "Clearscada" by "Aveva".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2017-9962 | Schneider Electric's ClearSCADA versions released prior to August 2017 are susceptible to a memory allocation vulnerability, ... | 7.5 - HIGH | 2017-09-26 | 2018-12-31 |
| CVE-2017-6021 | In Schneider Electric ClearSCADA 2014 R1 (build 75.5210) and prior, 2014 R1.1 (build 75.5387) and prior, 2015 R1 (build 76.56... | 7.5 - HIGH | 2018-05-14 | 2019-10-09 |
| CVE-2014-5413 | Schneider Electric StruxureWare SCADA Expert ClearSCADA 2010 R3 through 2014 R1 uses the MD5 algorithm for an X.509 certifica... | 5 - MEDIUM | 2014-09-18 | 2018-12-31 |
| CVE-2014-5412 | Schneider Electric StruxureWare SCADA Expert ClearSCADA 2010 R3 through 2014 R1 allows remote attackers to read database reco... | 5 - MEDIUM | 2014-09-18 | 2018-12-31 |
| CVE-2014-5411 | Multiple cross-site scripting (XSS) vulnerabilities in Schneider Electric StruxureWare SCADA Expert ClearSCADA 2010 R3 throug... | 3.5 - LOW | 2014-09-18 | 2018-12-31 |
| CVE-2014-0779 | The PLC driver in ServerMain.exe in the Kepware KepServerEX 4 component in Schneider Electric StruxureWare SCADA Expert Clear... | 6.8 - MEDIUM | 2014-03-14 | 2018-12-31 |
| CVE-2013-6142 | DNP3Driver.exe in the DNP3 driver in Schneider Electric ClearSCADA 2010 R2 through 2010 R3.1 and SCADA Expert ClearSCADA 2013... | 4.3 - MEDIUM | 2014-01-15 | 2018-12-31 |
| CVE-2011-3144 | Cross-site scripting (XSS) vulnerability in Control Microsystems ClearSCADA 2005, 2007, and 2009 before R2.3 and R1.4, as use... | 4.3 - MEDIUM | 2011-08-16 | 2018-12-31 |
| CVE-2011-3143 | Use-after-free vulnerability in Control Microsystems ClearSCADA 2005, 2007, and 2009 before R2.3 and R1.4, as used in SCX bef... | 10 - HIGH | 2011-08-16 | 2018-12-31 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Aveva | Clearscada | 2013 | r2 | All | All |
| Application | Aveva | Clearscada | 2013 | r1.2 | All | All |
| Application | Aveva | Clearscada | 2013 | r1.1a | All | All |
| Application | Aveva | Clearscada | 2013 | r1.1 | All | All |
| Application | Aveva | Clearscada | 2013 | r1 | All | All |
| Application | Aveva | Clearscada | 2010 | r3.1 | All | All |
| Application | Aveva | Clearscada | 2010 | r3 | All | All |
| Application | Aveva | Clearscada | 2010 | r2.1 | All | All |
| Application | Aveva | Clearscada | 2010 | r2 | All | All |
| Application | Aveva | Clearscada | 2009 | r1.3 | All | All |
| Application | Aveva | Clearscada | 2009 | r2.2 | All | All |
| Application | Aveva | Clearscada | 2009 | r2.1 | All | All |
| Application | Aveva | Clearscada | 2009 | r2.0 | All | All |
| Application | Aveva | Clearscada | 2009 | r1.2 | All | All |
| Application | Aveva | Clearscada | 2009 | r1.1 | All | All |
| Application | Aveva | Clearscada | 2009 | r1.0 | All | All |
| Application | Aveva | Clearscada | 2007 | r1.4 | All | All |
| Application | Aveva | Clearscada | 2007 | r1.3 | All | All |
| Application | Aveva | Clearscada | 2007 | r1.2 | All | All |
| Application | Aveva | Clearscada | 2007 | r1.1 | All | All |