Openautomationsoftware
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in any Openautomationsoftware product.
RSS Feeds for Openautomationsoftware security vulnerabilities
Create a CVE RSS feed including security vulnerabilities found in Openautomationsoftware products with stack.watch. Just hit watch, then grab your custom RSS feed url.
Products by Openautomationsoftware Sorted by Most Security Vulnerabilities since 2018
By the Year
In 2026 there have been 0 vulnerabilities in Openautomationsoftware. Openautomationsoftware did not have any published security vulnerabilities last year.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 0 | 0.00 |
| 2025 | 0 | 0.00 |
| 2024 | 5 | 5.48 |
| 2023 | 8 | 6.89 |
| 2022 | 8 | 8.03 |
It may take a day or so for new Openautomationsoftware vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Openautomationsoftware Security Vulnerabilities
| CVE | Date | Vulnerability | Products |
|---|---|---|---|
| CVE-2024-11220 | Dec 06, 2024 |
Telerik Reporting Privilege Escalation via Malicious RDLX FileA local low-level user on the server machine with credentials to the running OAS services can create and execute a report with an rdlx file on the server system itself. Any code within the rdlx file of the report executes with SYSTEM privileges, resulting in privilege escalation. |
|
| CVE-2024-21870 | Apr 03, 2024 |
Arbitrary File Write via OAS Engine Tags Config on OAS Platform V19.00.0057A file write vulnerability exists in the OAS Engine Tags Configuration functionality of Open Automation Software OAS Platform V19.00.0057. A specially crafted series of network requests can lead to arbitrary file creation or overwrite. An attacker can send a sequence of requests to trigger this vulnerability. |
|
| CVE-2024-22178 | Apr 03, 2024 |
Arbitrary File Write via OAS Engine Save Security Config v19.00.0057A file write vulnerability exists in the OAS Engine Save Security Configuration functionality of Open Automation Software OAS Platform V19.00.0057. A specially crafted series of network requests can lead to arbitrary file creation or overwrite. An attacker can send a sequence of requests to trigger this vulnerability. |
|
| CVE-2024-24976 | Apr 03, 2024 |
Open Automation Software OAS Platform 19.00.0057 DoS via File Data Source ConfigA denial of service vulnerability exists in the OAS Engine File Data Source Configuration functionality of Open Automation Software OAS Platform V19.00.0057. A specially crafted series of network requests can cause the running program to stop. An attacker can send a sequence of requests to trigger this vulnerability. |
|
| CVE-2024-27201 | Apr 03, 2024 |
Impr. Input Validation in OAS Platform V19.00.0057 User ConfigAn improper input validation vulnerability exists in the OAS Engine User Configuration functionality of Open Automation Software OAS Platform V19.00.0057. A specially crafted series of network requests can lead to unexpected data in the configuration. An attacker can send a sequence of requests to trigger this vulnerability. |
|
| CVE-2023-34994 | Sep 05, 2023 |
Resource Allocation in OAS Platform v18.00.0072 Enables Arbitrary Directory CreationAn improper resource allocation vulnerability exists in the OAS Engine configuration management functionality of Open Automation Software OAS Platform v18.00.0072. A specially crafted series of network requests can lead to creation of an arbitrary directory. An attacker can send a sequence of requests to trigger this vulnerability. |
|
| CVE-2023-31242 | Sep 05, 2023 |
Auth Bypass in Open Automation OAS Engine v18.00.0072An authentication bypass vulnerability exists in the OAS Engine functionality of Open Automation Software OAS Platform v18.00.0072. A specially-crafted series of network requests can lead to arbitrary authentication. An attacker can send a sequence of requests to trigger this vulnerability. |
|
| CVE-2023-32271 | Sep 05, 2023 |
OAS Platform v18.00.0072 Info Disclosure via ConfigMgmtAn information disclosure vulnerability exists in the OAS Engine configuration management functionality of Open Automation Software OAS Platform v18.00.0072. A specially crafted series of network requests can lead to a disclosure of sensitive information. An attacker can send a sequence of requests to trigger this vulnerability. |
|
| CVE-2023-32615 | Sep 05, 2023 |
Open Automation OAS Platform v18.00.0072 Arbitrary File Write (CVE-2023-32615)A file write vulnerability exists in the OAS Engine configuration functionality of Open Automation Software OAS Platform v18.00.0072. A specially crafted series of network requests can lead to arbitrary file creation or overwrite. An attacker can send a sequence of requests to trigger this vulnerability. |
|
| CVE-2023-34317 | Sep 05, 2023 |
Input Validation Flaw in OAS Platform 18.00.0072 Allowing Untrusted Config InjectionAn improper input validation vulnerability exists in the OAS Engine User Creation functionality of Open Automation Software OAS Platform v18.00.0072. A specially crafted series of network requests can lead to unexpected data in the configuration. An attacker can send a sequence of requests to trigger this vulnerability. |
|