Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

0X5Ea3O1F

#26627of 53,635
9.6Total CVSS
Vulnerabilities · 2
Medium
2
PT-2025-37107
4.8
2025-09-11
Scada-Lts · Scada-Lts · CVE-2025-10235
Name of the Vulnerable Software and Affected Versions: Scada-LTS versions prior to 2.7.8.2 Description: A flaw exists in Scada-LTS’s Reports Module due to cross-site scripting. The issue stems from unknown processing of the file `/reports.shtm` and manipulation of the `Colour` argument. This manipulation can be initiated remotely. The exploit has been published. Recommendations: Update Scada-LTS to version 2.7.8.2 or later. As a temporary workaround, restrict access to the `/reports.shtm` file. Avoid using the `Colour` parameter in the affected Reports Module until the issue is resolved.
PT-2025-37105
4.8
2025-09-10
Scada-Lts · Scada-Lts · CVE-2025-10234
Name of the Vulnerable Software and Affected Versions: Scada-LTS versions prior to 2.7.8.2 Description: A vulnerability exists in Scada-LTS that allows for cross site scripting. The issue affects unknown code within the `/data point edit.shtm` file of the Data Point Edit Module. The manipulation of the `Text Renderer` properties argument can be exploited remotely. The exploit is publicly available. Recommendations: Update Scada-LTS to version 2.7.8.2 or later. As a temporary workaround, restrict access to the `/data point edit.shtm` file. Avoid manipulating the `Text Renderer` properties argument.