Open Automation Software (OAS Platform) 19.0.0.57

CPE Details

Open Automation Software (OAS Platform) 19.0.0.57
19.0.0.57
2025-01-23
16h02 +00:00
2025-01-23
16h02 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:openautomationsoftware:open_automation_software:19.0.0.57:*:*:*:*:*:*:*

Informations

Vendor

openautomationsoftware

Product

open_automation_software

Version

19.0.0.57

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2024-11220 2024-12-06 17h45 +00:00 A local low-level user on the server machine with credentials to the running OAS services can create and execute a report with an rdlx file on the server system itself. Any code within the rdlx file of the report executes with SYSTEM privileges, resulting in privilege escalation.
8.5
Haute
CVE-2024-24976 2024-04-03 13h55 +00:00 A denial of service vulnerability exists in the OAS Engine File Data Source Configuration functionality of Open Automation Software OAS Platform V19.00.0057. A specially crafted series of network requests can cause the running program to stop. An attacker can send a sequence of requests to trigger this vulnerability.
4.9
Moyen
CVE-2024-27201 2024-04-03 13h55 +00:00 An improper input validation vulnerability exists in the OAS Engine User Configuration functionality of Open Automation Software OAS Platform V19.00.0057. A specially crafted series of network requests can lead to unexpected data in the configuration. An attacker can send a sequence of requests to trigger this vulnerability.
4.9
Moyen
CVE-2024-21870 2024-04-03 13h55 +00:00 A file write vulnerability exists in the OAS Engine Tags Configuration functionality of Open Automation Software OAS Platform V19.00.0057. A specially crafted series of network requests can lead to arbitrary file creation or overwrite. An attacker can send a sequence of requests to trigger this vulnerability.
4.9
Moyen
CVE-2024-22178 2024-04-03 13h55 +00:00 A file write vulnerability exists in the OAS Engine Save Security Configuration functionality of Open Automation Software OAS Platform V19.00.0057. A specially crafted series of network requests can lead to arbitrary file creation or overwrite. An attacker can send a sequence of requests to trigger this vulnerability.
4.9
Moyen