Known Vulnerabilities for products from Iconics

Listed below are 18 of the newest known vulnerabilities associated with the vendor "Iconics".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2022-23130 Buffer Over-read vulnerability in Mitsubishi Electric MC Works64 versions 4.00A (10.95.201.23) to 4.04E (10.95.210.01), ICONI... 5.5 - MEDIUM 2022-01-21 2022-01-27
CVE-2022-23129 Plaintext Storage of a Password vulnerability in Mitsubishi Electric MC Works64 versions 4.04E (10.95.210.01) and prior and I... 5.5 - MEDIUM 2022-01-21 2022-01-27
CVE-2022-23128 Incomplete List of Disallowed Inputs vulnerability in Mitsubishi Electric MC Works64 versions 4.00A (10.95.201.23) to 4.04E (... 9.8 - CRITICAL 2022-01-21 2022-01-27
CVE-2022-23127 Cross-site Scripting vulnerability in Mitsubishi Electric MC Works64 versions 4.04E (10.95.210.01) and prior and ICONICS Mobi... 6.1 - MEDIUM 2022-01-21 2022-01-27
CVE-2021-27041 A maliciously crafted DWG file can be used to write beyond the allocated buffer while parsing DWG files. This vulnerability c... 7.8 - HIGH 2021-06-25 2022-05-13
CVE-2021-27040 A maliciously crafted DWG file can be forced to read beyond allocated boundaries when parsing the DWG file. This vulnerabilit... 3.3 - LOW 2021-06-25 2022-05-13
CVE-2020-12015 A specially crafted communication packet sent to the affected systems could cause a denial-of-service condition due to improp... 7.5 - HIGH 2020-07-16 2020-07-22
CVE-2020-12013 A specially crafted WCF client that interfaces to the may allow the execution of certain arbitrary SQL commands remotely. Thi... 9.1 - CRITICAL 2020-07-16 2021-11-04
CVE-2020-12011 A specially crafted communication packet sent to the affected systems could cause a denial-of-service condition or allow remo... 9.8 - CRITICAL 2020-07-16 2020-07-29
CVE-2020-12009 A specially crafted communication packet sent to the affected device could cause a denial-of-service condition due to a deser... 7.5 - HIGH 2020-07-16 2020-07-29
CVE-2020-12007 A specially crafted communication packet sent to the affected devices could allow remote code execution and a denial-of-servi... 9.8 - CRITICAL 2020-07-16 2023-11-07
CVE-2016-2289 Directory traversal vulnerability in ICONICS WebHMI 9 and earlier allows remote attackers to read configuration files, and co... 7.5 - HIGH 2016-04-01 2016-04-04
CVE-2014-0758 An ActiveX control in GenLaunch.htm in ICONICS GENESIS32 8.0, 8.02, 8.04, and 8.05 allows remote attackers to execute arbitra... 9.3 - HIGH 2014-02-24 2014-02-24
CVE-2012-3018 The lockout-recovery feature in the Security Configurator component in ICONICS GENESIS32 9.22 and earlier and BizViz 9.22 and... 4.4 - MEDIUM 2012-07-31 2012-07-31
CVE-2011-5089 Buffer overflow in the Security Login ActiveX controls in ICONICS GENESIS32 8.05, 9.0, 9.1, and 9.2 and BizViz 8.05, 9.0, 9.1... 10 - HIGH 2012-04-18 2017-08-29
CVE-2011-5088 The GENESIS32 IcoSetServer ActiveX control in ICONICS GENESIS32 9.21 and BizViz 9.21 configures the trusted zone on the basis... 9.3 - HIGH 2012-04-18 2012-04-19
CVE-2011-2089 Stack-based buffer overflow in the SetActiveXGUID method in the VersionInfo ActiveX control in GenVersion.dll 8.0.138.0 in th... 9.3 - HIGH 2011-05-13 2017-08-29
CVE-2006-6488 Stack-based buffer overflow in the DoModal function in the Dialog Wrapper Module ActiveX control (DlgWrapper.dll) before 8.4.... 7.5 - HIGH 2006-12-31 2017-07-29

Known software with vulnerabilities from Iconics

Type Vendor Product Version
ApplicationIconicsBizviz-
ApplicationIconicsDialog Wrapper Module Activex Control8.4.165.0
ApplicationIconicsEnergy Analytix-
ApplicationIconicsFacility Analytix-
ApplicationIconicsGenesis32-
ApplicationIconicsGenesis64-
ApplicationIconicsHyper Historian-
ApplicationIconicsMobilehmi-
ApplicationIconicsQuality Analytix-
ApplicationIconicsSmart Energy Analytix-
ApplicationIconicsWebhmi9.0