VYPR

SCADA Webserver

Sign in to watch

by Spidercontrol

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2017-12728Hig0.517.80.00Oct 5, 2017An Improper Privilege Management issue was discovered in SpiderControl SCADA Web Server Version 2.02.0007 and prior. Authenticated, non-administrative local users are able to alter service executables with escalated privileges, which could allow an attacker to execute arbitrary code under the context of the current system services.
CVE-2017-12694Hig0.497.50.05Aug 25, 2017A Directory Traversal issue was discovered in SpiderControl SCADA Web Server. An attacker may be able to use a simple GET request to perform a directory traversal into system files.