Vulnerability index

Browse CVEs

8 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Scadabr MEDIUM 6.1
CVE-2026-9646

A reflected cross-site scripting issue exists in URL handling.

No fix yet
Fix from $1,600 2026-05-28
Scadabr CRITICAL 9.9
CVE-2026-9645

Exposed methods allow authenticated users to create and execute arbitrary JavaScript code on the server. The scripts execute with full access, enabli…

Mitigation only
Fix from $2,300 2026-05-28
Scadabr CRITICAL 9.8
CVE-2026-8605

In ScadaBR version 1.2.0, a Use of Hard-Coded Credentials vulnerability could allow an attacker to access the SCADA system as admin.

Mitigation only
Fix from $2,300 2026-05-19
Scadabr HIGH 8.8
CVE-2026-8604

In ScadaBR version 1.2.0, a CSRF vulnerability could allow an attacker to trigger any authenticated action through a victim's session by luring any l…

Mitigation only
Fix from $1,950 2026-05-19
Scadabr CRITICAL 9.8
CVE-2026-8603

In ScadaBR version 1.2.0, an OS Command Injection vulnerability could allow an attacker to execute commands as root on the SCADA system.

Mitigation only
Fix from $2,300 2026-05-19
Scadabr CRITICAL 9.1
CVE-2026-8602

In ScadaBR version 1.2.0, a Missing Authentication for Critical Function vulnerability could allow an unauthenticated attacker to send a HTTP GET req…

Mitigation only
Fix from $2,300 2026-05-19
Scadabr MEDIUM 6.1
CVE-2019-16344

A cross-site scripting (XSS) vulnerability in the login form (/ScadaBR/login.htm) in ScadaBR 1.0CE allows a remote attacker to inject arbitrary web s…

No fix yet
Fix from $1,600 2019-10-14
Scadabr MEDIUM 6.1
CVE-2019-16321

ScadaBR 1.0CE, and 1.1.x through 1.1.0-RC, has XSS via a request for a nonexistent resource, as demonstrated by the dwr/test/ PATH_INFO.

No fix yet
Fix from $1,600 2019-09-15