Integraxor
Vendor:
First CVE: Dec 23, 2010 · Active for 15 years
26
Total CVEs
More Total CVEs than 95% of tracked products
3.3
Avg CVEs / Year
Higher CVE frequency than 81% of tracked products
6.7
Avg CVSS
Higher Avg CVSS than 36% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Integraxor over time
Volume of CVEsAvg CVSS Base Score
First CVE
Dec 23, 2010
15 years ago
Most Recent CVE
Dec 20, 2017
3,139 days ago
CVE Severity & Scoring
Integraxor26 CVEs
58%
35%
All CVEs352,708 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network12 (46.2%)
Unknown14 (53.8%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low12 (46.2%)
High0 (0.0%)
Unknown14 (53.8%)
User Interaction
None10 (38.5%)
Unknown14 (53.8%)
Required2 (7.7%)
Privileges Required
Low1 (3.8%)
High0 (0.0%)
None11 (42.3%)
Unknown14 (53.8%)
Top CVEs
Signals from CVEs in this product scope (26 CVEs).
26 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2010-4597HIGH Stack-based buffer overflow in the save method in the IntegraXor.Project ActiveX control in igcomm.dll in Ecava IntegraXor Human-Machine Interface (HMI) before 3.5.3900.10 allows r | Dec 23, 2010 | 10.0 | 49 | NO | YES |
CVE-2010-4598MEDIUM Directory traversal vulnerability in Ecava IntegraXor 3.6.4000.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the file_name parameter in an ope | Dec 23, 2010 | 5.0 | 40 | NO | YES |
CVE-2016-8341CRITICAL An issue was discovered in Ecava IntegraXor Version 5.0.413.0. The Ecava IntegraXor web server has parameters that are vulnerable to SQL injection. If the queries are not sanitized | Feb 13, 2017 | 9.8 | 32 | NO | NO |
CVE-2017-6050CRITICAL A SQL Injection issue was discovered in Ecava IntegraXor Versions 5.2.1231.0 and prior. The application fails to properly validate user input, which may allow for an unauthenticate | Jun 21, 2017 | 9.8 | 31 | NO | NO |
CVE-2012-0246HIGH Directory traversal vulnerability in an unspecified ActiveX control in Ecava IntegraXor before 3.71.4200 allows remote attackers to execute arbitrary code via vectors involving an | Apr 2, 2012 | 9.3 | 29 | NO | NO |
CVE-2012-4700HIGH Multiple buffer overflows in an ActiveX control in PE3DO32A.ocx in IntegraXor SCADA Server 4.00 build 4250.0 and earlier allow remote attackers to execute arbitrary code via a craf | Feb 8, 2013 | 9.3 | 28 | NO | NO |
CVE-2014-2375HIGH Ecava IntegraXor SCADA Server Stable 4.1.4360 and earlier and Beta 4.1.4392 and earlier allows remote attackers to read or write to arbitrary files, and obtain sensitive informatio | Sep 15, 2014 | 9.0 | 23 | NO | NO |
CVE-2014-0753HIGH Stack-based buffer overflow in the SCADA server in Ecava IntegraXor before 4.1.4390 allows remote attackers to cause a denial of service (system crash) by triggering access to DLL | Jan 21, 2014 | 7.8 | 23 | NO | NO |
CVE-2016-2306HIGH The HMI web server in Ecava IntegraXor before 5.0 build 4522 allows remote attackers to obtain sensitive cleartext information by sniffing the network. | Apr 22, 2016 | 7.5 | 22 | NO | NO |
CVE-2016-2299HIGH SQL injection vulnerability in Ecava IntegraXor before 5.0 build 4522 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. | Apr 22, 2016 | 7.3 | 22 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (26 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
2 CVEs
7.7% of CVEs· 88th percentile
Social Chatter
Signals from CVEs in this product scope (26 CVEs).
Media Mentions
Signals from CVEs in this product scope (26 CVEs).
Top CNAs Publishing CVEs For Integraxor
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 5.0.413.0 | 1 | 9.8 | 1.7% | 0 | 0 |
| 4.1.4380 | 1 | 5.0 | 2.6% | 0 | 0 |
| 4.1.4369 | 2 | 6.4 | 2.6% | 0 | 0 |
| 4.1.4360 | 2 | 6.4 | 2.6% | 0 | 0 |
| 4.1.4340 | 1 | 5.0 | 2.6% | 0 | 0 |
| 4.1 | 3 | 5.9 | 2.3% | 0 | 0 |
| 4.00 | 2 | 6.4 | 2.1% | 0 | 0 |
| 3.72 | 3 | 7.4 | 2.6% | 0 | 0 |
| 3.71.4200 | 2 | 6.4 | 2.1% | 0 | 0 |
| 3.71 | 3 | 7.4 | 2.6% | 0 | 0 |
| 3.6.4000.0 | 5 | 6.7 | 2.4% | 0 | 0 |
| 3.60.4061 | 2 | 6.4 | 2.1% | 0 | 0 |
| 3.60 | 2 | 6.8 | 3.6% | 0 | 0 |
| 3.5.3900.5 | 5 | 6.3 | 7.6% | 0 | 1 |
| 3.5.3900.10 | 5 | 6.3 | 7.6% | 0 | 1 |