Dcce's vulnerability profile centers on a narrow line of industrial control and programmable logic controller products, specifically its MAC1100 PLC and associated firmware, which present a focused but critical attack surface in operational technology environments. The vulnerabilities affecting this vendor skew strongly toward critical-severity outcomes and recur through weakness classes including missing authorization controls, cleartext credential storage, command injection, and out-of-bounds read conditions that are characteristic of firmware and embedded systems with limited input validation and access-control mechanisms. Defenders should prioritize inventory and isolation of affected PLCs in industrial networks, as these systems often operate with extended lifecycles and limited patching cadence; live severity and exploitation counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Dcce over time
Signals from CVEs in this vendor scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-18758CRITICAL An issue in Dut Computer Control Engineering Co.'s PLC MAC1100 allows attackers to execute arbitrary code. | Aug 13, 2021 | 9.8 | 31 | NO | NO |
CVE-2020-18753CRITICAL An issue in Dut Computer Control Engineering Co.'s PLC MAC1100 allows attackers to gain access to the system and escalate privileges via a crafted packet. | Aug 13, 2021 | 9.8 | 31 | NO | NO |
CVE-2020-18759HIGH An information disclosure vulnerability exists in the EPA protocol of Dut Computer Control Engineering Co.'s PLC MAC1100. | Aug 13, 2021 | 7.5 | 25 | NO | NO |
CVE-2020-18757HIGH An issue in Dut Computer Control Engineering Co.'s PLC MAC1100 allows attackers to cause persistent denial of service (DOS) via a crafted packet. | Aug 13, 2021 | 7.5 | 25 | NO | NO |
CVE-2020-18756HIGH An arbitrary memory access vulnerability in the EPA protocol of Dut Computer Control Engineering Co.'s PLC MAC1100 allows attackers to read the contents of any variable area. | Aug 13, 2021 | 7.5 | 25 | NO | NO |
CVE-2020-18754HIGH An information disclosure vulnerability exists within Dut Computer Control Engineering Co.'s PLC MAC1100. | Aug 13, 2021 | 7.5 | 25 | NO | NO |
Signals from CVEs in this vendor scope (6 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Dcce.
Media articles that mention a CVE ID that affects a product developed by Dcce — matched by CVE ID, not by vendor name.