Lucene search

K
cvelistIcscertCVELIST:CVE-2023-28716
HistoryApr 27, 2023 - 10:11 p.m.

CVE-2023-28716 CVE-2023-28716

2023-04-2722:11:48
icscert
www.cve.org
5
myscada mypro
version 8.26.0
security
vulnerability
os command injection
authenticated user
exploit
arbitrary
operating system

AI Score

8.8

Confidence

High

EPSS

0.001

Percentile

31.6%

mySCADA myPRO versions 8.26.0 and prior has parameters which an authenticated user could exploit to inject arbitrary operating system commands.

CNA Affected

[
  {
    "vendor": "mySCADA Technologies",
    "product": "mySCADA myPRO",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "lessThanOrEqual": "8.26.0",
        "versionType": "custom"
      }
    ]
  }
]

AI Score

8.8

Confidence

High

EPSS

0.001

Percentile

31.6%

Related for CVELIST:CVE-2023-28716