VYPR

SmartPTT SCADA Server

by Elcomplus

CVEs (2)

  • CVE-2021-43938HigApr 29, 2022
    risk 0.53cvss 8.1epss 0.01

    Elcomplus SmartPTT SCADA Server is vulnerable to an unauthenticated user can request various files from the server without any authentication or authorization.

  • CVE-2021-43937HigApr 29, 2022
    risk 0.49cvss 7.6epss 0.00

    Elcomplus SmartPTT SCADA Server web application does not, or cannot, sufficiently verify whether a well-formed, valid, consistent request was intentionally provided by the user who submitted the request.