Export CSV

Products

1 vendor
VendorProductsCVEsKEVAvg EPSSWorst Severity
111076.0%CRITICAL

Related CVEs

11
CVE IDDescriptionSeverityCVSSKEVEPSSPublished
CVE-2025-25067mySCADA myPRO Manager is vulnerable to an OS command injection which could allow a remote attacker to execute arbitrary OS commands.CRITICAL9.374.8%Feb 13, 2025
CVE-2025-24865The administrative web interface of mySCADA myPRO Manager can be accessed without authentication which could allow an unauthorized attacker to retrieve sensitive information and upload files without the associated password.CRITICAL10.093.2%Feb 13, 2025
CVE-2025-23411mySCADA myPRO Manager is vulnerable to cross-site request forgery (CSRF), which could allow an attacker to obtain sensitive information. An attacker would need to trick the victim in to visiting an attacker-controlled website.MEDIUM5.142.3%Feb 13, 2025
CVE-2025-22896mySCADA myPRO Manager stores credentials in cleartext, which could allow an attacker to obtain sensitive information.CRITICAL9.287.2%Feb 13, 2025
CVE-2023-29169mySCADA myPRO versions 8.26.0 and prior has parameters which an authenticated user could exploit to inject arbitrary operating system commands. HIGH8.850.2%Apr 27, 2023
CVE-2023-29150mySCADA myPRO versions 8.26.0 and prior has parameters which an authenticated user could exploit to inject arbitrary operating system commands. HIGH8.850.2%Apr 27, 2023
CVE-2023-28716mySCADA myPRO versions 8.26.0 and prior has parameters which an authenticated user could exploit to inject arbitrary operating system commands. HIGH8.890.3%Apr 27, 2023
CVE-2023-28400mySCADA myPRO versions 8.26.0 and prior has parameters which an authenticated user could exploit to inject arbitrary operating system commands. HIGH8.897.6%Apr 27, 2023
CVE-2023-28384mySCADA myPRO versions 8.26.0 and prior has parameters which an authenticated user could exploit to inject arbitrary operating system commands.HIGH8.898.6%Apr 27, 2023
CVE-2022-2234An authenticated mySCADA myPRO 8.26.0 user may be able to modify parameters to run commands directly in the operating system.HIGH8.8Aug 24, 2022
CVE-2022-0999An authenticated user may be able to misuse parameters to inject arbitrary operating system commands into mySCADA myPRO versions 8.25.0 and prior.HIGH8.8Apr 11, 2022