← Back

Belden

belden

31 CVEs • 207 products

Products (207)

Click to collapse
Toggle

CVEs (31)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
5Belden
NetappSiemens+2 more
12E Series Santricity Os Controller
Garrettcom Magnum Dx940e FirmwareHirschmann Hios+9 more
Nov 21, 2024
Aug 9, 2019
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the IPv4 component. There is an IPNET security vulnerability: Stack overflow in the parsing of IPv4 packets’ IP options.
3Belden
SiemensWindriver
7Garrettcom Magnum Dx940e Firmware
Hirschmann HiosRuggedcom Win7000 Firmware+4 more
Nov 21, 2024
Aug 5, 2019
N/A· v4
7.1 HIGH· v3
4.8 MEDIUM· v2
Wind River VxWorks 6.6, 6.7, 6.8, 6.9.3, 6.9.4, and Vx7 has Incorrect Access Control in IPv4 assignment by the ipdhcpc DHCP client component.
1Belden
134Hirschmann M1 8mm Sc
Hirschmann M1 8sfpHirschmann M1 8sm Sc+131 more
Nov 21, 2024
Mar 6, 2018
N/A· v4
5.9 MEDIUM· v3
4.3 MEDIUM· v2
A Cleartext Transmission of Sensitive Information issue was discovered in Belden Hirschmann RS, RSR, RSB, MACH100, MACH1000, MACH4000, MS, and OCTOPUS Classic Platform Switches. A cleartext transmission of sensitive info...Show more
A Cleartext Transmission of Sensitive Information issue was discovered in Belden Hirschmann RS, RSR, RSB, MACH100, MACH1000, MACH4000, MS, and OCTOPUS Classic Platform Switches. A cleartext transmission of sensitive information vulnerability in the web interface has been identified, which may allow an attacker to obtain sensitive information through a successful man-in-the-middle attack.Show less
1Belden
134Hirschmann M1 8mm Sc
Hirschmann M1 8sfpHirschmann M1 8sm Sc+131 more
Nov 21, 2024
Mar 6, 2018
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
An Improper Restriction of Excessive Authentication Attempts issue was discovered in Belden Hirschmann RS, RSR, RSB, MACH100, MACH1000, MACH4000, MS, and OCTOPUS Classic Platform Switches. An improper restriction of exce...Show more
An Improper Restriction of Excessive Authentication Attempts issue was discovered in Belden Hirschmann RS, RSR, RSB, MACH100, MACH1000, MACH4000, MS, and OCTOPUS Classic Platform Switches. An improper restriction of excessive authentication vulnerability in the web interface has been identified, which may allow an attacker to brute force authentication.Show less
1Belden
134Hirschmann M1 8mm Sc
Hirschmann M1 8sfpHirschmann M1 8sm Sc+131 more
Nov 21, 2024
Mar 6, 2018
N/A· v4
6.5 MEDIUM· v3
6.4 MEDIUM· v2
An Information Exposure Through Query Strings in GET Request issue was discovered in Belden Hirschmann RS, RSR, RSB, MACH100, MACH1000, MACH4000, MS, and OCTOPUS Classic Platform Switches. An information exposure through...Show more
An Information Exposure Through Query Strings in GET Request issue was discovered in Belden Hirschmann RS, RSR, RSB, MACH100, MACH1000, MACH4000, MS, and OCTOPUS Classic Platform Switches. An information exposure through query strings vulnerability in the web interface has been identified, which may allow an attacker to impersonate a legitimate user.Show less
1Belden
134Hirschmann M1 8mm Sc
Hirschmann M1 8sfpHirschmann M1 8sm Sc+131 more
Nov 21, 2024
Mar 6, 2018
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
A Session Fixation issue was discovered in Belden Hirschmann RS, RSR, RSB, MACH100, MACH1000, MACH4000, MS, and OCTOPUS Classic Platform Switches. A session fixation vulnerability in the web interface has been identified...Show more
A Session Fixation issue was discovered in Belden Hirschmann RS, RSR, RSB, MACH100, MACH1000, MACH4000, MS, and OCTOPUS Classic Platform Switches. A session fixation vulnerability in the web interface has been identified, which may allow an attacker to hijack web sessions.Show less
1Belden
134Hirschmann M1 8mm Sc
Hirschmann M1 8sfpHirschmann M1 8sm Sc+131 more
Nov 21, 2024
Mar 6, 2018
N/A· v4
6.5 MEDIUM· v3
5.8 MEDIUM· v2
An Inadequate Encryption Strength issue was discovered in Belden Hirschmann RS, RSR, RSB, MACH100, MACH1000, MACH4000, MS, and OCTOPUS Classic Platform Switches. An inadequate encryption strength vulnerability in the web...Show more
An Inadequate Encryption Strength issue was discovered in Belden Hirschmann RS, RSR, RSB, MACH100, MACH1000, MACH4000, MS, and OCTOPUS Classic Platform Switches. An inadequate encryption strength vulnerability in the web interface has been identified, which may allow an attacker to obtain sensitive information through a successful man-in-the-middle attack.Show less
1Belden
1Tofino Xenon Security Appliance Firmware
May 13, 2026
Nov 20, 2017
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
An issue has been discovered on the Belden Hirschmann Tofino Xenon Security Appliance before 03.2.00. Design flaws in OPC classic and in custom netfilter modules allow an attacker to remotely activate rules on the firewa...Show more
An issue has been discovered on the Belden Hirschmann Tofino Xenon Security Appliance before 03.2.00. Design flaws in OPC classic and in custom netfilter modules allow an attacker to remotely activate rules on the firewall and to connect to any TCP port of a protected asset, thus bypassing the firewall. The attack methodology is a crafted OPC dynamic port shift.Show less
1Belden
1Tofino Xenon Security Appliance Firmware
May 13, 2026
Nov 20, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
An issue has been discovered on the Belden Hirschmann Tofino Xenon Security Appliance before 03.2.00. Improper handling of the mbap.length field of ModBus packets in the ModBus DPI filter allows an attacker to send malfo...Show more
An issue has been discovered on the Belden Hirschmann Tofino Xenon Security Appliance before 03.2.00. Improper handling of the mbap.length field of ModBus packets in the ModBus DPI filter allows an attacker to send malformed/crafted packets to a protected asset, bypassing function code filtering.Show less
1Belden
1Tofino Xenon Security Appliance Firmware
May 13, 2026
Nov 20, 2017
N/A· v4
6.8 MEDIUM· v3
7.2 HIGH· v2
An issue has been discovered on the Belden Hirschmann Tofino Xenon Security Appliance before 03.2.00. An incomplete firmware signature allows a local attacker to upgrade the equipment (kernel, file system) with unsigned,...Show more
An issue has been discovered on the Belden Hirschmann Tofino Xenon Security Appliance before 03.2.00. An incomplete firmware signature allows a local attacker to upgrade the equipment (kernel, file system) with unsigned, attacker-controlled, data. This occurs because the appliance_config file is signed but the .tar.sec file is unsigned.Show less
1Belden
2Hirschmann Firmware
Hirschmann L2b
May 6, 2026
Feb 18, 2016
N/A· v4
5.3 MEDIUM· v3
2.9 LOW· v2
The password-sync feature on Belden Hirschmann Classic Platform switches L2B before 05.3.07 and L2E, L2P, L3E, and L3P before 09.0.06 sets an SNMP community to the same string as the administrator password, which allows...Show more
The password-sync feature on Belden Hirschmann Classic Platform switches L2B before 05.3.07 and L2E, L2P, L3E, and L3P before 09.0.06 sets an SNMP community to the same string as the administrator password, which allows remote attackers to obtain sensitive information by sniffing the network.Show less