Pcvue
Vendor:
First CVE: Apr 3, 2012 · Active for 14 years
24
Total CVEs
More Total CVEs than 96% of tracked products
4.0
Avg CVEs / Year
Higher CVE frequency than 85% of tracked products
6.2
Avg CVSS
Higher Avg CVSS than 28% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Pcvue over time
Volume of CVEsAvg CVSS Base Score
First CVE
Apr 3, 2012
14 years ago
Most Recent CVE
Jul 7, 2026
20 days ago
CVE Severity & Scoring
Pcvue24 CVEs
8%
63%
25%
All CVEs352,785 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local5 (20.8%)
Network12 (50.0%)
Unknown4 (16.7%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low16 (66.7%)
High4 (16.7%)
Unknown4 (16.7%)
User Interaction
None14 (58.3%)
Unknown4 (16.7%)
Required5 (20.8%)
Privileges Required
Low5 (20.8%)
High1 (4.2%)
None14 (58.3%)
Unknown4 (16.7%)
Top CVEs
Signals from CVEs in this product scope (24 CVEs).
24 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2011-4044MEDIUM An unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to modify files via calls to unknown method | Apr 3, 2012 | 5.8 | 53 | NO | YES |
CVE-2011-4043HIGH Integer overflow in an unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary co | Apr 3, 2012 | 9.3 | 44 | NO | YES |
CVE-2011-4042HIGH An unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code by using a crafte | Apr 3, 2012 | 9.3 | 42 | NO | YES |
CVE-2020-26867CRITICAL ARC Informatique PcVue prior to version 12.0.17 is vulnerable due to the deserialization of untrusted data, which may allow an attacker to remotely execute arbitrary code on the we | Oct 12, 2020 | 9.8 | 35 | NO | NO |
CVE-2026-14868MEDIUM The encryption algorithm used to protect the configuration of user accounts, stored in the built-in user directory of PcVue projects, all versions prior to 17.0.0, is not strong en | Jul 7, 2026 | 5.5 | 29 | NO | NO |
CVE-2026-1693HIGH The OAuth grant type Resource Owner Password Credentials (ROPC) flow is still used by the werbservices used by the WebVue, WebScheduler, TouchVue and Snapvue features of PcVue in v | Feb 26, 2026 | 7.5 | 28 | NO | NO |
CVE-2011-4045MEDIUM Buffer overflow in an unspecified ActiveX control in aipgctl.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to cause a denial of ser | Apr 3, 2012 | 4.3 | 28 | NO | YES |
CVE-2026-14867MEDIUM Credentials of built-in users are insecurely stored in the User directory of PcVue projects, all versions prior to 17.0.0. A local attacker could retrieve users’ credentials.
Act | Jul 7, 2026 | 5.5 | 27 | NO | NO |
CVE-2020-26869HIGH ARC Informatique PcVue prior to version 12.0.17 is vulnerable to information exposure, allowing unauthorized users to access session data of legitimate users. This issue also affec | Oct 12, 2020 | 7.5 | 27 | NO | NO |
CVE-2020-26868HIGH ARC Informatique PcVue prior to version 12.0.17 is vulnerable to a denial-of-service attack due to the ability of an unauthorized user to modify information used to validate messag | Oct 12, 2020 | 7.5 | 27 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (24 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
1 CVE
4.2% of CVEs· 97th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
4 CVEs
16.7% of CVEs· 87th percentile
Social Chatter
Signals from CVEs in this product scope (24 CVEs).
Media Mentions
Signals from CVEs in this product scope (24 CVEs).
Top CNAs Publishing CVEs For Pcvue
Top CWEs
Versions
No cataloged versions.