An authenticated user may be able to misuse parameters to inject arbitrary operating system commands into mySCADA myPRO versions 8.25.0 and prior.
References
Link | Resource |
---|---|
https://www.cisa.gov/uscert/ics/advisories/icsa-22-083-02 | Third Party Advisory US Government Resource |
Configurations
Information
Published : 2022-04-11 13:15
Updated : 2022-04-18 06:45
NVD link : CVE-2022-0999
Mitre link : CVE-2022-0999
JSON object : View
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
Products Affected
myscada
- mypro