CVE Tools

Intouch

18 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for Intouch, a product in the ics ot iot space. Use it to gauge the current risk picture and drill into individual advisories.

Intouch CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Intouch CVEs per month
MonthCVEs
2024-100
2024-110
2024-120
2025-010
2025-020
2025-030
2025-040
2025-050
2025-060
2025-070
2025-080
2025-090
2025-100
2025-110
2025-120
2026-010
2026-020
2026-030
2026-040
2026-050
2026-060
2026-070
2026-080
2026-090

Severity

How the 18 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical16%
  • High950%
  • Medium739%
  • Low16%

Latest CVEs

The 15 most recently published vulnerabilities affecting Intouch.

  1. CVE-2024-7113Allocation of Resources Without Limits or Throttling in AVEVA SuiteLink Server7.5
  2. CVE-2023-34982AVEVA Operations Control Logger External Control of File Name or Path 5.5
  3. CVE-2023-33873AVEVA Operations Control Logger Execution with Unnecessary Privileges 7.8
  4. CVE-2021-32987AVEVA SuiteLink Server Null Pointer Dereference7.5
  5. CVE-2021-32999AVEVA SuiteLink Server Improper Handling of Exceptional Conditions7.5
  6. CVE-2021-32979AVEVA SuiteLink Server Null Pointer Dereference7.5
  7. CVE-2021-32971AVEVA SuiteLink Server Null Pointer Dereference7.5
  8. CVE-2021-32959AVEVA SuiteLink Server Buffer Overflow8.1
  9. CVE-2021-32942The vulnerability could expose cleartext credentials from AVEVA InTouch Runtime 2020 R2 and all prior versions (WindowViewer) if an authorized, privileged user creates a diagnostic memory dump of t...6.6
  10. CVE-2018-10628AVEVA InTouch 2014 R2 SP1 and prior, InTouch 2017, InTouch 2017 Update 1, and InTouch 2017 Update 2 allow an unauthenticated user to send a specially crafted packet that could overflow the buffer o...9.8
  11. CVE-2015-1009Schneider Electric InduSoft Web Studio before 7.1.3.5 Patch 5 and Wonderware InTouch Machine Edition through 7.1 SP3 Patch 4 use cleartext for project-window password storage, which allows local us...1.7
  12. CVE-2012-3005Untrusted search path vulnerability in Invensys Wonderware InTouch 2012 and earlier, as used in Wonderware Application Server, Wonderware Information Server, Foxboro Control Software, InFusion CE/F...6.9
  13. CVE-2012-3847slssvc.exe in Invensys Wonderware SuiteLink in Invensys InTouch 2012 and Wonderware Application Server 2012 allows remote attackers to cause a denial of service (resource consumption) via a long Un...5.0
  14. CVE-2012-0258Heap-based buffer overflow in the WWCabFile ActiveX component in the Wonderware System Platform in Invensys Wonderware Application Server 2012 and earlier, Foxboro Control Software 3.1 and earlier,...6.8
  15. CVE-2012-0257Heap-based buffer overflow in the WWCabFile ActiveX component in the Wonderware System Platform in Invensys Wonderware Application Server 2012 and earlier, Foxboro Control Software 3.1 and earlier,...6.8

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store