VYPR

Scada Lts

by Scadalts

CVEs (1)

  • CVE-2026-84859MedSep 16, 2026
    risk 0.42cvss 6.5epss

    ScadaLTS 2.8.1-release-candidate build 0 is affected by an Authenticated Blind SQL Injection The /api/events/search endpoint accepts a JSON body containing a sortBy array. The values in this array are concatenated directly into the SQL ORDER BY clause without any…