Vulnerabilities
Vulnerable Software
Myscada:  >> Mypro  Security Vulnerabilities
The administrative web interface of mySCADA myPRO Manager can be accessed without authentication which could allow an unauthorized attacker to retrieve sensitive information and upload files without the associated password.
CVSS Score
10.0
EPSS Score
0.641
Published
2025-02-13
mySCADA myPRO Manager is vulnerable to an OS command injection which could allow a remote attacker to execute arbitrary OS commands.
CVSS Score
9.8
EPSS Score
0.004
Published
2025-02-13
mySCADA myPRO Manager stores credentials in cleartext, which could allow an attacker to obtain sensitive information.
CVSS Score
8.6
EPSS Score
0.416
Published
2025-02-13
mySCADA myPRO Manager is vulnerable to cross-site request forgery (CSRF), which could allow an attacker to obtain sensitive information. An attacker would need to trick the victim in to visiting an attacker-controlled website.
CVSS Score
6.3
EPSS Score
0.0
Published
2025-02-13
mySCADA myPRO uses a hard-coded password which could allow an attacker to remotely execute code on the affected device.
CVSS Score
9.8
EPSS Score
0.003
Published
2024-07-02
mySCADA myPRO versions 8.26.0 and prior has parameters which an authenticated user could exploit to inject arbitrary operating system commands.
CVSS Score
8.8
EPSS Score
0.001
Published
2023-04-27
mySCADA myPRO versions 8.26.0 and prior has parameters which an authenticated user could exploit to inject arbitrary operating system commands.
CVSS Score
8.8
EPSS Score
0.001
Published
2023-04-27
mySCADA myPRO versions 8.26.0 and prior has parameters which an authenticated user could exploit to inject arbitrary operating system commands.
CVSS Score
8.8
EPSS Score
0.646
Published
2023-04-27
mySCADA myPRO versions 8.26.0 and prior has parameters which an authenticated user could exploit to inject arbitrary operating system commands.
CVSS Score
8.8
EPSS Score
0.051
Published
2023-04-27
mySCADA myPRO versions 8.26.0 and prior has parameters which an authenticated user could exploit to inject arbitrary operating system commands.
CVSS Score
8.8
EPSS Score
0.001
Published
2023-04-27


Contact Us

Shodan ® - All rights reserved