Intouch
This hub aggregates every CVE we track for Intouch, a product in the ics ot iot space. Use it to gauge the current risk picture and drill into individual advisories.
18
CVEs tracked
1
Critical
9
High
0
In CISA KEV
Severity distribution
HIGH9MEDIUM7LOW1CRITICAL1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Intouch.
- CVE-2024-7113Allocation of Resources Without Limits or Throttling in AVEVA SuiteLink Server7.5
- CVE-2023-34982AVEVA Operations Control Logger External Control of File Name or Path 5.5
- CVE-2023-33873AVEVA Operations Control Logger Execution with Unnecessary Privileges 7.8
- CVE-2021-32987AVEVA SuiteLink Server Null Pointer Dereference7.5
- CVE-2021-32999AVEVA SuiteLink Server Improper Handling of Exceptional Conditions7.5
- CVE-2021-32979AVEVA SuiteLink Server Null Pointer Dereference7.5
- CVE-2021-32971AVEVA SuiteLink Server Null Pointer Dereference7.5
- CVE-2021-32959AVEVA SuiteLink Server Buffer Overflow8.1
- CVE-2021-32942The vulnerability could expose cleartext credentials from AVEVA InTouch Runtime 2020 R2 and all prior versions (WindowViewer) if an authorized, privileged user creates a diagnostic memory dump of t...6.6
- CVE-2018-10628AVEVA InTouch 2014 R2 SP1 and prior, InTouch 2017, InTouch 2017 Update 1, and InTouch 2017 Update 2 allow an unauthenticated user to send a specially crafted packet that could overflow the buffer o...9.8
- CVE-2015-1009Schneider Electric InduSoft Web Studio before 7.1.3.5 Patch 5 and Wonderware InTouch Machine Edition through 7.1 SP3 Patch 4 use cleartext for project-window password storage, which allows local us...1.7
- CVE-2012-3005Untrusted search path vulnerability in Invensys Wonderware InTouch 2012 and earlier, as used in Wonderware Application Server, Wonderware Information Server, Foxboro Control Software, InFusion CE/F...6.9
- CVE-2012-3847slssvc.exe in Invensys Wonderware SuiteLink in Invensys InTouch 2012 and Wonderware Application Server 2012 allows remote attackers to cause a denial of service (resource consumption) via a long Un...5.0
- CVE-2012-0257Heap-based buffer overflow in the WWCabFile ActiveX component in the Wonderware System Platform in Invensys Wonderware Application Server 2012 and earlier, Foxboro Control Software 3.1 and earlier,...6.8
- CVE-2012-0258Heap-based buffer overflow in the WWCabFile ActiveX component in the Wonderware System Platform in Invensys Wonderware Application Server 2012 and earlier, Foxboro Control Software 3.1 and earlier,...6.8
Product normalization is registry-driven with AI assist and human review. How it works