Myscada
29 known vulnerabilities
Top Products
mySCADA myPRO Manager is vulnerable to an OS command injection which could allow a remote attacker to execute arbitrar
The administrative web interface of mySCADA myPRO Manager can be accessed without authentication which could allow an
mySCADA myPRO Manager is vulnerable to cross-site request forgery (CSRF), which could allow an attacker to obtain sens
mySCADA myPRO Manager stores credentials in cleartext, which could allow an attacker to obtain sensitive information.
mySCADA myPRO uses a hard-coded password which could allow an attacker to remotely execute code on the affected device
mySCADA myPRO versions 8.26.0 and prior has parameters which an authenticated user could exploit to inject arbitrary ope
mySCADA myPRO versions 8.26.0 and prior has parameters which an authenticated user could exploit to inject arbitrary ope
mySCADA myPRO versions 8.26.0 and prior has parameters which an authenticated user could exploit to inject arbitrary ope
mySCADA myPRO versions 8.26.0 and prior has parameters which an authenticated user could exploit to inject arbitrary ope
mySCADA myPRO versions 8.26.0 and prior has parameters which an authenticated user could exploit to inject arbitrary ope
An authenticated mySCADA myPRO 8.26.0 user may be able to modify parameters to run commands directly in the operating sy
mySCADA myPRO versions prior to 8.20.0 does not restrict unauthorized read access to sensitive system information.
mySCADA myPRO versions prior to 8.20.0 allows an unauthenticated remote attacker to upload arbitrary files to the file s
mySCADA myPRO versions prior to 8.20.0 allows an unauthenticated remote attacker to upload arbitrary files to arbitrary
mySCADA myPRO versions prior to 8.20.0 does not restrict unauthorized read access to sensitive directory listing informa
An authenticated user may be able to misuse parameters to inject arbitrary operating system commands into mySCADA myPRO
mySCADA myPRO: Versions 8.20.0 and prior has a vulnerable debug interface which includes a ping utility, which may allow
mySCADA myPRO Versions 8.20.0 and prior stores passwords using MD5, which may allow an attacker to crack the previously
An additional, nondocumented administrative account exists in mySCADA myPRO Versions 8.20.0 and prior that is not expose
An unauthenticated remote attacker can access mySCADA myPRO Versions 8.20.0 and prior without any form of authentication
mySCADA myPRO: Versions 8.20.0 and prior has a feature where the firmware can be updated, which may allow an attacker to
mySCADA myPRO: Versions 8.20.0 and prior has a feature to send emails, which may allow an attacker to inject arbitrary o
mySCADA myPRO: Versions 8.20.0 and prior has a feature where the password can be specified, which may allow an attacker
mySCADA myPRO: Versions 8.20.0 and prior has a feature where the API password can be specified, which may allow an attac
mySCADA myDESIGNER Versions 8.20.0 and prior fails to properly validate contents of an imported project file, which may
mySCADA myDESIGNER 8.20.0 and below allows Directory Traversal attacks when importing project files. If an attacker can
mySCADA myPRO 7 allows remote attackers to discover all ProjectIDs in a project by sending all of the prj parameter valu
A hardcoded FTP username of myscada and password of Vikuk63 in 'myscadagate.exe' in mySCADA myPRO 7 allows remote attack
An Unquoted Search Path issue was discovered in mySCADA myPRO Versions 7.0.26 and prior. Application services utilize un
Frequently Asked Questions
How many CVEs affect Myscada?
Myscada has 29 CVE records in our database, including 12 critical and 15 high severity vulnerabilities.
What are the most severe Myscada vulnerabilities?
Myscada has 12 critical severity (CVSS 9.0+) and 15 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Myscada vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Myscada products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Myscada Vulnerabilities
CyberStrike scans your infrastructure for Myscada vulnerabilities and provides real-time remediation guidance.
Get Started