Certec EDV Gmbh develops SCADA and industrial-control visualization software, with its ATVISE product serving as a web-based monitoring and automation platform. The observed vulnerability footprint centers on web-layer input-handling and output-encoding issues including cross-site scripting, HTTP header injection, and downstream injection flaws that are characteristic of web-facing application interfaces. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Certec Edv Gmbh over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-6031HIGH A Header Injection issue was discovered in Certec EDV GmbH atvise scada prior to Version 3.0. An "improper neutralization of HTTP headers for scripting syntax" issue has been ident | May 6, 2017 | 8.8 | 29 | NO | NO |
CVE-2017-6029MEDIUM A Cross-Site Scripting issue was discovered in Certec EDV GmbH atvise scada prior to Version 3.0. This may allow remote code execution. | May 6, 2017 | 5.4 | 20 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Certec Edv Gmbh.
Media articles that mention a CVE ID that affects a product developed by Certec Edv Gmbh — matched by CVE ID, not by vendor name.