📦 Oas Platform

by Openautomationsoftware

🔍 What is Oas Platform?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-26082

CRITICAL CVSS 9.1 May 25, 2022

CVE-2022-26082 is a critical file write vulnerability in Open Automation Software OAS Platform's SecureTransferFiles functionality that allows remote attackers to write arbitrary files to the system. ...

CVE-2022-26833

CRITICAL CVSS 9.4 May 25, 2022

CVE-2022-26833 is an improper authentication vulnerability in Open Automation Software OAS Platform that allows unauthenticated attackers to access the REST API. This affects OAS Platform V16.00.0121 ...

CVE-2023-34998

HIGH CVSS 8.1 Sep 5, 2023

CVE-2023-34998 is an authentication bypass vulnerability in Open Automation Software OAS Platform that allows attackers to gain unauthorized access by sniffing network traffic and sending specially cr...

CVE-2023-31242

HIGH CVSS 8.1 Sep 5, 2023

This authentication bypass vulnerability in Open Automation Software OAS Platform allows attackers to gain unauthorized access by sending specially-crafted network requests to the OAS Engine. Affected...

CVE-2023-34353

HIGH CVSS 7.5 Sep 5, 2023

This authentication bypass vulnerability in Open Automation Software OAS Platform allows attackers to decrypt sensitive information by sniffing network traffic. It affects OAS Engine authentication fu...

CVE-2022-26077

HIGH CVSS 7.5 May 25, 2022

CVE-2022-26077 is a cleartext transmission vulnerability in Open Automation Software OAS Platform that exposes sensitive configuration data during network communications. Attackers can intercept unenc...

CVE-2022-26026

HIGH CVSS 7.5 May 25, 2022

CVE-2022-26026 is a denial-of-service vulnerability in Open Automation Software OAS Platform's SecureConfigValues functionality. Attackers can send specially crafted network requests to trigger loss o...