Vulnerabilities (CVE)

Filtered by vendor Openplcproject Subscribe
Filtered by product Scadabr
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-26829 1 Openplcproject 1 Scadabr 2024-11-21 3.5 LOW 5.4 MEDIUM
OpenPLC ScadaBR through 0.9.1 on Linux and through 1.12.4 on Windows allows stored XSS via system_settings.shtm.
CVE-2021-26828 1 Openplcproject 1 Scadabr 2024-11-21 6.5 MEDIUM 8.8 HIGH
OpenPLC ScadaBR through 0.9.1 on Linux and through 1.12.4 on Windows allows remote authenticated users to upload and execute arbitrary JSP files via view_edit.shtm.