cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2021-22809,https://securityvulnerability.io/vulnerability/CVE-2021-22809,Out-of-Bounds Read Vulnerability in Eurotherm by Schneider Electric GUIcon Tool,"An Out-of-Bounds Read vulnerability in the Eurotherm by Schneider Electric GUIcon tool allows a malicious actor to cause unintended data disclosure. This vulnerability arises when an improperly handled *.gd1 configuration file is loaded, potentially exposing sensitive information. The risk is present in GUIcon Version 2.0 (Build 683.003) and earlier versions, highlighting the importance of prompt updates and vigilant configuration management to mitigate such threats.",Schneider Electric,Guicon,5.5,MEDIUM,0.0006600000197067857,false,,false,false,false,,,false,false,,2022-01-28T19:09:44.000Z,0 CVE-2021-22808,https://securityvulnerability.io/vulnerability/CVE-2021-22808,Use After Free Vulnerability in Eurotherm by Schneider Electric GUIcon Tool,"A Use After Free vulnerability has been identified in the Eurotherm by Schneider Electric GUIcon tool that may allow an attacker to execute arbitrary code. This flaw arises when processing a malicious *.gd1 configuration file within the GUI, enabling potential exploitation through crafted inputs. Users are advised to ensure that they are using the latest versions of the software to mitigate this risk. For more information, consult the security advisory provided by Schneider Electric.",Schneider Electric,Guicon,7.8,HIGH,0.0008500000112690032,false,,false,false,false,,,false,false,,2022-01-28T19:09:43.000Z,0 CVE-2021-22807,https://securityvulnerability.io/vulnerability/CVE-2021-22807,Out-of-bounds Write Vulnerability in GUIcon Tool by Schneider Electric,"A vulnerability exists in the GUIcon tool by Schneider Electric that allows an out-of-bounds write when loading malicious *.gd1 configuration files. This security flaw can enable unauthorized execution of arbitrary code, posing serious risks to the system's integrity and security. The affected version includes Eurotherm by Schneider Electric GUIcon Version 2.0 (Build 683.003) and earlier versions, highlighting the need for immediate awareness and remediation.",Schneider Electric,Guicon,7.8,HIGH,0.0007200000109151006,false,,false,false,false,,,false,false,,2022-01-28T19:09:42.000Z,0 CVE-2018-7813,https://securityvulnerability.io/vulnerability/CVE-2018-7813,,A Type Confusion (CWE-843) vulnerability exists in Eurotherm by Schneider Electric GUIcon V2.0 (Gold Build 683.0) on pcwin.dll which could cause remote code to be executed when parsing a GD1 file,Schneider Electric,Eurotherm By Schneider Electric Guicon V2.0 (gold Build 683.0),7.8,HIGH,0.0010400000028312206,false,,false,false,false,,,false,false,,2019-02-06T23:00:00.000Z,0 CVE-2018-7814,https://securityvulnerability.io/vulnerability/CVE-2018-7814,,A Stack-based Buffer Overflow (CWE-121) vulnerability exists in Eurotherm by Schneider Electric GUIcon V2.0 (Gold Build 683.0) which could cause remote code to be executed when parsing a GD1 file,Schneider Electric,Eurotherm By Schneider Electric Guicon V2.0 (gold Build 683.0),7.8,HIGH,0.0016899999463930726,false,,false,false,false,,,false,false,,2019-02-06T23:00:00.000Z,0 CVE-2018-7815,https://securityvulnerability.io/vulnerability/CVE-2018-7815,,A Type Confusion (CWE-843) vulnerability exists in Eurotherm by Schneider Electric GUIcon V2.0 (Gold Build 683.0) on c3core.dll which could cause remote code to be executed when parsing a GD1 file,Schneider Electric,Eurotherm By Schneider Electric Guicon V2.0 (gold Build 683.0),7.8,HIGH,0.0010400000028312206,false,,false,false,false,,,false,false,,2019-02-06T23:00:00.000Z,0