Known Vulnerabilities for products from Circontrol
Listed below are 9 of the newest known vulnerabilities associated with the vendor "Circontrol".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Additional devices specifications by Circontrol can be found at device.report : Circontrol
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2018-17922 json | Circontrol CirCarLife all versions prior to 4.3.1, the PAP credentials of the device are stored in clear text in a log file t... | 9.8 - CRITICAL | 2018-11-02 | 2019-10-09 |
| CVE-2018-17918 json | Circontrol CirCarLife all versions prior to 4.3.1, authentication to the device can be bypassed by entering the URL of a spec... | 9.8 - CRITICAL | 2018-11-02 | 2019-10-09 |
| CVE-2018-16672 json | An issue was discovered in CIRCONTROL CirCarLife before 4.3. Due to the storage of multiple sensitive information elements in... | 6.5 - MEDIUM | 2018-09-26 | 2021-07-08 |
| CVE-2018-16671 json | An issue was discovered in CIRCONTROL CirCarLife before 4.3. There is system software information disclosure due to lack of a... | 5.3 - MEDIUM | 2018-09-18 | 2018-11-07 |
| CVE-2018-16670 json | An issue was discovered in CIRCONTROL CirCarLife before 4.3. There is PLC status disclosure due to lack of authentication for... | 5.3 - MEDIUM | 2018-09-18 | 2018-11-07 |
| CVE-2018-16669 json | An issue was discovered in CIRCONTROL Open Charge Point Protocol (OCPP) before 1.5.0, as used in CirCarLife, PowerStudio, and... | 9.8 - CRITICAL | 2018-09-18 | 2019-10-03 |
| CVE-2018-16668 json | An issue was discovered in CIRCONTROL CirCarLife before 4.3. There is internal installation path disclosure due to the lack o... | 5.3 - MEDIUM | 2018-09-18 | 2021-07-08 |
| CVE-2018-12635 json | CirCarLife Scada v4.2.4 allows unauthorized upgrades via requests to the html/upgrade.html and services/system/firmware.upgra... | 7.5 - HIGH | 2018-06-22 | 2018-08-10 |
| CVE-2018-12634 json | CirCarLife Scada before 4.3 allows remote attackers to obtain sensitive information via a direct request for the html/log or ... | 9.8 - CRITICAL | 2018-06-22 | 2021-07-08 |
Known software with vulnerabilities from Circontrol
| Type | Vendor | Product | Version |
|---|---|---|---|
| Hardware | Circontrol | Circarlife | - |
| Operating System | Circontrol | Circarlife Firmware | - |
| Application | Circontrol | Circarlife Scada | - |
| Application | Circontrol | Scada | 4.2.4 |