We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.
Please see our statement on Data Privacy.
Assigner | icscert |
Reserved | 2024-05-09 |
Published | 2024-07-02 |
Updated | 2024-08-01 |
mySCADA myPRO uses a hard-coded password which could allow an attacker to remotely execute code on the affected device.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N | |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
CWE-259 Use of Hard-coded Password
Nassim Asrir working with Trend Micro Zero Day Initiative reported this vulnerability to CISA.
https://www.cisa.gov/news-events/ics-advisories/icsa-24-184-02
https://www.myscada.org/mypro/