CVE-2024-2882
- EPSS 0.57%
- Veröffentlicht 27.06.2024 19:15:13
- Zuletzt bearbeitet 21.11.2024 09:10:44
SDG Technologies PnPSCADA allows a remote attacker to attach various entities without requiring system authentication. This breach could potentially lead to unauthorized control, data manipulation, and access to sensitive information within the SCADA...
CVE-2023-1934
- EPSS 0.08%
- Veröffentlicht 12.05.2023 14:15:09
- Zuletzt bearbeitet 13.02.2025 17:16:00
The PnPSCADA system, a product of SDG Technologies CC, is afflicted by a critical unauthenticated error-based PostgreSQL Injection vulnerability. Present within the hitlogcsv.jsp endpoint, this security flaw permits unauthenticated attackers to engag...
CVE-2020-24841
- EPSS 0.42%
- Veröffentlicht 16.02.2021 13:15:12
- Zuletzt bearbeitet 21.11.2024 05:16:07
PNPSCADA 2.200816204020 allows SQL injection via parameter 'interf' in /browse.jsp. Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.