measuresoft 漏洞与 CVE 列表(13)

产品(CPE): — CVE 数: 13

measuresoft 漏洞概览

汇总 measuresoft 相关全部产品的 CVE 与安全漏洞情报,包括 CVSS、EPSS、公开时间与漏洞情报数据。

常见弱点模式包括 路径处理缺陷、缓冲区溢出、内存损坏与输入验证问题,在 生产负载与软件部署 使用场景中可能带来 内存损坏、文件覆盖与异常行为 等风险。

相关漏洞数据主要来源于公开漏洞披露与安全公告,可用于评估历史漏洞暴露面与修复优先级。

漏洞分布趋势(近 24 个月)

显示 11313 CVE 数
«« 第一页 « 上一页 第 1 / 1 页 下一页 »
CVE 摘要 来源 最高 CVSS EPSS % 公开时间 更新时间
CVE-2024-3746 The entire parent directory - C:\ScadaPro and its sub-directories and files are configured by default to allow user, including unprivileged users, to write or overwrite files. [email protected] 6.8 0.18% 2024-04-30 2026-06-17
CVE-2022-3263 The security descriptor of Measuresoft ScadaPro Server version 6.7 has inconsistent permissions, which could allow a local user with limited privileges to modify the service binary path and start malicious commands with SYSTEM privileges. [email protected] 7.8 0.24% 2022-09-23 2026-06-17
CVE-2022-2898 Measuresoft ScadaPro Server and Client (All Versions) do not properly resolve links before file access; this could allow a denial-of-service condition. [email protected] 6.1 0.22% 2022-08-31 2026-06-17
CVE-2022-2897 Measuresoft ScadaPro Server and Client (All Versions) do not properly resolve links before file access; this could allow privilege escalation.. [email protected] 7.8 0.28% 2022-08-31 2026-06-17
CVE-2022-2896 Measuresoft ScadaPro Server (All Versions) allows use after free while processing a specific project file. [email protected] 7.8 0.31% 2022-08-31 2026-06-17
CVE-2022-2895 Measuresoft ScadaPro Server (All Versions) uses unmaintained ActiveX controls. These controls may allow two stack-based buffer overflow instances while processing a specific project file. [email protected] 7.8 0.29% 2022-08-31 2026-06-17
CVE-2022-2894 Measuresoft ScadaPro Server (All Versions) uses unmaintained ActiveX controls. The controls may allow seven untrusted pointer deference instances while processing a specific project file. [email protected] 7.8 0.29% 2022-08-31 2026-06-17
CVE-2022-2892 Measuresoft ScadaPro Server (Versions prior to 6.8.0.1) uses an unmaintained ActiveX control, which may allow an out-of-bounds write condition while processing a specific project file. [email protected] 7.8 0.29% 2022-08-31 2026-06-17
CVE-2012-1824 Untrusted search path vulnerability in Measuresoft ScadaPro Client before 4.0.0 and ScadaPro Server before 4.0.0 allows local users to gain privileges via a Trojan horse DLL in the current working directory. [email protected] 7.2 0.48% 2012-05-25 2026-06-16
CVE-2011-3497 service.exe in Measuresoft ScadaPro 4.0.0 and earlier allows remote attackers to execute arbitrary DLL functions via the XF function, possibly related to an insecure exposed method. [email protected] 10.0 58.75% 2011-09-16 2026-06-16
CVE-2011-3496 service.exe in Measuresoft ScadaPro 4.0.0 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) BF, (2) OF, or (3) EF command. [email protected] 10.0 14.37% 2011-09-16 2026-06-16
CVE-2011-3495 Multiple directory traversal vulnerabilities in service.exe in Measuresoft ScadaPro 4.0.0 and earlier allow remote attackers to read, modify, or delete arbitrary files via the (1) RF, (2) wF, (3) UF, or (4) NF command. [email protected] 10.0 10.80% 2011-09-16 2026-06-16
CVE-2011-3490 Multiple stack-based buffer overflows in service.exe in Measuresoft ScadaPro 4.0.0 and earlier allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long command to port 11234, as demonstrated with the TF command. [email protected] 10.0 36.43% 2011-09-16 2026-06-16
«« 第一页 « 上一页 第 1 / 1 页 下一页 »
cvelogic Threat Intelligence