Critical severity9.1NVD Advisory· Published Feb 26, 2022· Updated Jun 17, 2026
CVE-2022-25359
CVE-2022-25359
Description
On ICL ScadaFlex II SCADA Controller SC-1 and SC-2 1.03.07 devices, unauthenticated remote attackers can overwrite, delete, or create files.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
13- ICL/SCADA Controller SC-1 and SC-2description
- Range: 1.03.07
cpe:2.3:o:iclinks:scadaflex_ii_firmware:1.01.01:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:o:iclinks:scadaflex_ii_firmware:1.01.01:*:*:*:*:*:*:*
- cpe:2.3:o:iclinks:scadaflex_ii_firmware:1.01.14:*:*:*:*:*:*:*
- cpe:2.3:o:iclinks:scadaflex_ii_firmware:1.02.01:*:*:*:*:*:*:*
- cpe:2.3:o:iclinks:scadaflex_ii_firmware:1.02.15:*:*:*:*:*:*:*
- cpe:2.3:o:iclinks:scadaflex_ii_firmware:1.02.20:*:*:*:*:*:*:*
- cpe:2.3:o:iclinks:scadaflex_ii_firmware:1.03.07:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- packetstormsecurity.com/files/166103/ICL-ScadaFlex-II-SCADA-Controllers-SC-1-SC-2-1.03.07-Remote-File-Modification.htmlnvdExploitThird Party AdvisoryVDB Entry
- files.iclinks.com/datasheets/Scadaflex%20II/Scadaflex%20SC-1%20&%20SC-2_A1_compressed.pdfnvdProductVendor Advisory
News mentions
0No linked articles in our index yet.