216.73.217.22

CVE-2025-24865

· Published 13/02/2025 22:15 · Modified 04/03/2025 21:16

Labels: CVE-2025-24865 2025-02-13CVE-2025-24865CWE-306[email protected]

Essential information

Published
13/02/2025 22:15
Modified
04/03/2025 21:16
Author
Creator
CVSS
10.0 CRITICAL (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

CVSS metrics

Description

The administrative web interface of mySCADA myPRO Manager can be accessed without authentication which could allow an unauthorized attacker to retrieve sensitive information and upload files without the associated password.

NVD status

Status
Analyzed — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
myscada / mypro cpe:2.3:a:myscada:mypro:*:*:*:*:*:*:*:*

References