mySCADA myPRO Manager OS Command Injection Vulnerability

Vulnerability

A command injection vulnerability has been identified in mySCADA myPRO Manager versions prior to 1.4. This vulnerability allows remote attackers to execute arbitrary operating system commands. The issue arises from improper validation of user input, enabling command injection exploitation.

Impact

Exploitation of this vulnerability could lead to unauthorized execution of operating system commands on the affected server.

Remediation

Users are advised to update to mySCADA myPRO Manager version 1.4, which is available for download on the mySCADA website.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
7.4
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.