Vulnerabilities
Vulnerable Software
Reflected cross-site scripting (non-persistent) in SCADA WebServer (Versions prior to 2.03.0001) could allow an attacker to send a crafted URL that contains JavaScript, which can be reflected off the web application to the victim's browser.
CVSS Score
6.1
EPSS Score
0.002
Published
2018-12-04
An Improper Privilege Management issue was discovered in SpiderControl SCADA Web Server Version 2.02.0007 and prior. Authenticated, non-administrative local users are able to alter service executables with escalated privileges, which could allow an attacker to execute arbitrary code under the context of the current system services.
CVSS Score
7.8
EPSS Score
0.001
Published
2017-10-05


Contact Us

Shodan ® - All rights reserved