Interactive Graphical Scada System Data Server
Vendor:
First CVE: Feb 9, 2022 · Active for 4 years
8
Total CVEs
More Total CVEs than 87% of tracked products
8.0
Avg CVEs / Year
Higher CVE frequency than 95% of tracked products
8.7
Avg CVSS
Higher Avg CVSS than 78% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Interactive Graphical Scada System Data Server over time
Volume of CVEsAvg CVSS Base Score
First CVE
Feb 9, 2022
4 years ago
Most Recent CVE
Feb 9, 2022
1,629 days ago
CVE Severity & Scoring
Interactive Graphical Scada System Data Server8 CVEs
50%
50%
All CVEs352,785 CVEs
45%
40%
11%
HighCritical
Attack Vector
Local0 (0.0%)
Network8 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low8 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None8 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None8 (100.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (8 CVEs).
8 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-24313CRITICAL A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflow potentially leading to remote code execution when an attac | Feb 9, 2022 | 9.8 | 47 | NO | NO |
CVE-2022-24312CRITICAL A CWE-22: Improper Limitation of a Pathname to a Restricted Directory vulnerability exists that could cause modification of an existing file by adding at end of file or create a ne | Feb 9, 2022 | 9.8 | 33 | NO | NO |
CVE-2022-24314HIGH A CWE-125: Out-of-bounds Read vulnerability exists that could cause memory leaks potentially resulting in denial of service when an attacker repeatedly sends a specially crafted me | Feb 9, 2022 | 7.5 | 32 | NO | NO |
CVE-2022-24311CRITICAL A CWE-22: Improper Limitation of a Pathname to a Restricted Directory vulnerability exists that could cause modification of an existing file by inserting at beginning of file or cr | Feb 9, 2022 | 9.8 | 32 | NO | NO |
CVE-2022-24315HIGH A CWE-125: Out-of-bounds Read vulnerability exists that could cause denial of service when an attacker repeatedly sends a specially crafted message. Affected Product: Interactive G | Feb 9, 2022 | 7.5 | 27 | NO | NO |
CVE-2022-24317HIGH A CWE-862: Missing Authorization vulnerability exists that could cause information exposure when an attacker sends a specific message. Affected Product: Interactive Graphical SCADA | Feb 9, 2022 | 7.5 | 25 | NO | NO |
CVE-2022-24316HIGH A CWE-665: Improper Initialization vulnerability exists that could cause information exposure when an attacker sends a specially crafted message. Affected Product: Interactive Grap | Feb 9, 2022 | 7.5 | 25 | NO | NO |
CVE-2022-24310CRITICAL A CWE-190: Integer Overflow or Wraparound vulnerability exists that could cause heap-based buffer overflow, leading to denial of service and potentially remote code execution when | Feb 9, 2022 | 9.8 | 24 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (8 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (8 CVEs).
Media Mentions
Signals from CVEs in this product scope (8 CVEs).
Top CNAs Publishing CVEs For Interactive Graphical Scada System Data Server
Top CWEs
Versions
No cataloged versions.