VendorsArcinfopcvueany version
Vulnerabilities

Arcinfo PcVue any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

19CVEs
CVE-2020-26867
ARC Informatique PcVue Deserialization of Untrusted Data
Published 2020-10-12 · Modified
9.8EPSS 0.038
CVE-2011-4043
Integer overflow in an unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code via a large value for an integer parameter, leading to a buffer overflow.
Published 2012-04-03 · Analyzed
9.31 PoCEPSS 0.074
CVE-2011-4042
An unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code by using a crafted HTML document to obtain control of a function pointer.
Published 2012-04-03 · Analyzed
9.31 PoCEPSS 0.064
CVE-2026-14868
Weak encryption mechanism for User directory
Published 2026-07-07 · Analyzed
8.4EPSS 0.001
CVE-2020-26868
ARC Informatique PcVue Access to Critical Private Variable via Public Method
Published 2020-10-12 · Modified
7.5EPSS 0.022
CVE-2020-26869
ARC Informatique PcVue Exposure of Sensitive Information to an Unauthorized Actor
Published 2020-10-12 · Modified
7.5EPSS 0.017
CVE-2026-1693
Use of vulnerable Resource Owner Password Credentials flow
Published 2026-02-26 · Analyzed
7.5EPSS 0.003
CVE-2026-14867
Insecure password storage in User directory
Published 2026-07-07 · Analyzed
6.8EPSS 0.001
CVE-2022-4311
An insertion of sensitive information into log file vulnerability exists in PcVue versions 15 through 15.2.2. This could allow a user with access to the log files to discover connection strings of data sources configured for the DbConnect, which could include credentials. Successful exploitation of this vulnerability could allow other users unauthorized access to the underlying data sources.
Published 2022-12-12 · Modified
6.5EPSS 0.003
CVE-2026-1697
Use of unsecure cookies for GraphicalData web service and WebClient web app
Published 2026-02-26 · Analyzed
6.5EPSS 0.001
CVE-2026-1698
HTTP Host header vulnerability in WebClient and WebScheduler web apps
Published 2026-02-26 · Analyzed
6.1EPSS 0.002
CVE-2026-1695
XSS vulnerability upon unsuccessful authentication
Published 2026-02-26 · Analyzed
6.1EPSS 0.002
CVE-2026-1696
Missing security HTTP headers
Published 2026-02-26 · Analyzed
6.1EPSS 0.001
CVE-2026-1692
Missing origin validation in GraphicalData web service requests
Published 2026-02-26 · Analyzed
6.1EPSS 0.001
CVE-2011-4044
An unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to modify files via calls to unknown methods.
Published 2012-04-03 · Analyzed
5.82 PoCEPSS 0.267
CVE-2022-2569
ARC Informatique PcVue
Published 2022-08-24 · Modified
5.5EPSS 0.001
CVE-2022-4312
A cleartext storage of sensitive information vulnerability exists in PcVue versions 8.10 through 15.2.3. This could allow an unauthorized user with access the email and short messaging service (SMS) accounts configuration files to discover the associated simple mail transfer protocol (SMTP) account credentials and the SIM card PIN code. Successful exploitation of this vulnerability could allow an unauthorized user access to the underlying email account and SIM card.
Published 2022-12-12 · Modified
5.5EPSS 0.001
CVE-2011-4045
Buffer overflow in an unspecified ActiveX control in aipgctl.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to cause a denial of service via a crafted HTML document.
Published 2012-04-03 · Analyzed
4.31 PoCEPSS 0.037
CVE-2026-1694
Server configuration details in HTTP headers
Published 2026-02-26 · Analyzed
4.3EPSS 0.002