danfoss 漏洞與 CVE 列表(10)

產品(CPE): — CVE 數: 10

danfoss 漏洞概覽

彙總 danfoss 相關全部產品的 CVE 與安全漏洞情報,包括 CVSS、EPSS、公開時間與漏洞情報資料。

已披露問題常與 跨站腳本、SQL 注入與輸入驗證問題 相關,可能在 生產負載與軟體部署 場景中帶來 工作階段劫持與異常行為 等暴露風險。

相關漏洞資料主要來源於公開漏洞披露與安全公告,可用於評估歷史漏洞暴露面與修補優先順序。

漏洞分布趨勢(近 24 個月)

顯示 11010 CVE 數
«« 第一頁 « 上一頁 第 1 / 1 頁 下一頁 »
CVE 摘要 來源 最高 CVSS EPSS % 公開時間 更新時間
CVE-2023-25915 Due to improper input validation, an authenticated remote attacker could execute arbitrary commands on the target system. [email protected] 9.9 0.78% 2023-08-21 2025-01-17
CVE-2023-25914 Due to improper restriction, authenticated attackers could retrieve and read system files of the underlying server through the XML interface. The information that can be read can lead to a full system compromise. [email protected] 8.8 0.67% 2023-08-21 2025-01-17
CVE-2023-25913 Because of an authentication flaw an attacker would be capable of generating a web report that discloses sensitive information such as internal IP addresses, usernames, store names and other sensitive information. [email protected] 7.5 0.52% 2023-08-21 2024-11-21
CVE-2023-25912 The webreport generation feature in the Danfoss AK-EM100 allows an unauthorized actor to generate a web report that discloses sensitive information such as the internal IP address, usernames and internal device values. [email protected] 5.3 0.60% 2023-06-11 2024-11-21
CVE-2023-25911 The Danfoss AK-EM100 web applications allow for an authenticated user to perform OS command injection through the web application parameters. [email protected] 9.9 2.30% 2023-06-11 2025-01-17
CVE-2023-22586 The Danfoss AK-EM100 web applications allow for Local File Inclusion in the file parameter. [email protected] 7.7 0.67% 2023-06-11 2024-11-21
CVE-2023-22585 The Danfoss AK-EM100 web applications allow for Reflected Cross-Site Scripting in the title parameter. [email protected] 9.0 0.60% 2023-06-11 2024-11-21
CVE-2023-22584 The Danfoss AK-EM100 stores login credentials in cleartext. [email protected] 7.5 0.45% 2023-06-11 2024-11-21
CVE-2023-22583 The Danfoss AK-EM100 web forms allow for SQL injection in the login forms. [email protected] 10.0 0.76% 2023-06-11 2024-11-21
CVE-2023-22582 The Danfoss AK-EM100 web applications allow for Reflected Cross-Site Scripting. [email protected] 9.0 0.60% 2023-06-11 2024-11-21
«« 第一頁 « 上一頁 第 1 / 1 頁 下一頁 »
cvelogic Threat Intelligence