📦 Industrial Automation Aprol

by Br Automation

🔍 What is Industrial Automation Aprol?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-43764

CRITICAL CVSS 9.8 Feb 8, 2023

This vulnerability in B&R APROL Tbase server allows attackers to cause buffer overflow through insufficient input validation when changing configurations. Successful exploitation could lead to denial-...

CVE-2022-43761

CRITICAL CVSS 9.4 Feb 8, 2023

CVE-2022-43761 is a critical authentication bypass vulnerability in B&R APROL industrial automation systems. It allows unauthenticated attackers to read and modify system configurations without creden...

CVE-2019-19874

CRITICAL CVSS 9.8 Nov 27, 2020

CVE-2019-19874 is a command injection vulnerability in B&R Industrial Automation APROL web interface that allows attackers to execute arbitrary commands on the web server. This affects APROL systems b...

CVE-2019-19876

CRITICAL CVSS 9.8 Nov 27, 2020

CVE-2019-19876 is a SQL injection vulnerability in B&R Industrial Automation APROL's EnMon PHP script. This allows attackers to execute arbitrary SQL commands on the database, potentially compromising...

CVE-2019-19872

CRITICAL CVSS 9.8 Nov 27, 2020

CVE-2019-19872 is a command injection vulnerability in B&R Industrial Automation APROL's AprolLoader component that allows attackers to execute arbitrary commands on affected systems. This affects APR...

CVE-2024-5622

HIGH CVSS 7.8 Aug 29, 2024

An untrusted search path vulnerability in B&R APROL's AprolConfigureCCServices allows authenticated local attackers to execute arbitrary code with elevated privileges. This affects B&R APROL versions ...

CVE-2022-43763

HIGH CVSS 7.5 Feb 8, 2023

This vulnerability in B&R APROL's Tbase server allows insufficient precondition checks when calling commands, potentially leading to Denial of Service conditions. It affects industrial automation syst...

CVE-2024-5624

MEDIUM CVSS 6.1 Aug 29, 2024

This reflected cross-site scripting vulnerability in B&R APROL's Shift Logbook application allows attackers to inject malicious JavaScript that executes in users' browsers. Attackers could steal sessi...