Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
niagara framework vulnerabilities and exploits
(subscribe to this query)
7.2
CVSSv3
CVE-2017-16744
A path traversal vulnerability in Tridium Niagara AX Versions 3.8 and prior and Niagara 4 systems Versions 4.4 and prior installed on Microsoft Windows Systems can be exploited by leveraging valid platform (administrator) credentials.
Tridium Niagara
Tridium Niagara Ax Framework
1 Github repository
9.8
CVSSv3
CVE-2017-16748
An attacker can log into the local Niagara platform (Niagara AX Framework Versions 3.8 and prior or Niagara 4 Framework Versions 4.4 and prior) using a disabled account name and a blank password, granting the attacker administrator access to the Niagara system.
Tridium Niagara
Tridium Niagara Ax Framework
1 Github repository
5.4
CVSSv3
CVE-2018-18985
Tridium Niagara Enterprise Security 2.3u1, all versions before 2.3.118.6, Niagara AX 3.8u4, all versions before 3.8.401.1, Niagara 4.4u2, all versions before 4.4.93.40.2, and Niagara 4.6, all versions before 4.6.96.28.4 a cross-site scripting vulnerability has been identified tha...
Tridium Tridium Niagara Enterprise Security 2.3u1, All Versions Prior To 2.3.118.6, Niagara Ax 3.8u4, All Versions Prior To 3.8.401.1, Niagara 4.4u2, All Versions Prior To 4.4.93.40.2, And Niagara 4.6, All Versions Prior To 4.6.96.28.4
Tridium Niagara
Tridium Niagara 4.4u2
Tridium Niagara Ax Framework
Tridium Niagara Ax Framework 3.8u4
Tridium Niagara Enterprise Security
Tridium Niagara Enterprise Security 2.3u1
7.5
CVSSv3
CVE-2024-1309
Uncontrolled Resource Consumption vulnerability in Honeywell Niagara Framework on Windows, Linux, QNX allows Content Spoofing.This issue affects Niagara Framework: before Niagara AX 3.8.1, before Niagara 4.1.
Honeywell Niagara Framework
1 Article
6.5
CVSSv3
CVE-2025-3936
Incorrect Permission Assignment for Critical Resource vulnerability in Tridium Niagara Framework on Windows, Tridium Niagara Enterprise Security on Windows allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Niagara Framework: prior to 4.14...
Tridium Niagara Framework
Tridium Niagara Enterprise Security
7.7
CVSSv3
CVE-2025-3937
Use of Password Hash With Insufficient Computational Effort vulnerability in Tridium Niagara Framework on Windows, Linux, QNX, Tridium Niagara Enterprise Security on Windows, Linux, QNX allows Cryptanalysis. This issue affects Niagara Framework: prior to 4.14.2, prior to 4.15.1, ...
Tridium Niagara Framework
Tridium Niagara Enterprise Security
6.8
CVSSv3
CVE-2025-3938
Missing Cryptographic Step vulnerability in Tridium Niagara Framework on Windows, Linux, QNX, Tridium Niagara Enterprise Security on Windows, Linux, QNX allows Cryptanalysis. This issue affects Niagara Framework: prior to 4.14.2, prior to 4.15.1, prior to 4.10.11; Niagara Enterpr...
Tridium Niagara Framework
Tridium Niagara Enterprise Security
5.3
CVSSv3
CVE-2025-3939
Observable Response Discrepancy vulnerability in Tridium Niagara Framework on Windows, Linux, QNX, Tridium Niagara Enterprise Security on Windows, Linux, QNX allows Cryptanalysis. This issue affects Niagara Framework: prior to 4.14.2, prior to 4.15.1, prior to 4.10.11; Niagara En...
Tridium Niagara Framework
Tridium Niagara Enterprise Security
5.3
CVSSv3
CVE-2025-3940
Improper Use of Validation Framework vulnerability in Tridium Niagara Framework on Windows, Linux, QNX, Tridium Niagara Enterprise Security on Windows, Linux, QNX allows Input Data Manipulation. This issue affects Niagara Framework: prior to 4.14.2, prior to 4.15.1, prior to 4.10...
Tridium Niagara Framework
Tridium Niagara Enterprise Security
5.4
CVSSv3
CVE-2025-3941
Improper Handling of Windows ::DATA Alternate Data Stream vulnerability in Tridium Niagara Framework on Windows, Tridium Niagara Enterprise Security on Windows allows Input Data Manipulation. This issue affects Niagara Framework: prior to 4.14.2, prior to 4.15.1, prior to 4.10.11...
Tridium Niagara Framework
Tridium Niagara Enterprise Security
Preferred Score:
CVSSv3
CVSSv2
CVSSv3
CVSSv4
EPSS
VMScore
Recommendations:
CVE-2025-4278
updatenavi
fujitsu client computing limited
CVE-2025-32465
CVE-2025-49184
ibm
CVE-2025-4275
file upload
CVE-2025-33073
sick ag
file inclusion
CVE-2025-26383
unspecified
Home
/
Search Results
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »