PT-2024-8683 · Unknown · Spidercontrol Scada Web Server

Published

2024-09-10

·

Updated

2024-09-25

·

CVE-2024-8232

CVSS v4.0

8.7

High

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions SpiderControl SCADA Web Server (affected versions not specified)
Description The issue is related to the upload of specially crafted malicious files without authentication, which could allow an attacker to execute arbitrary code. The vulnerability is actively exploited.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Unrestricted File Upload

Weakness Enumeration

Related Identifiers

BDU:2024-10285
CVE-2024-8232

Affected Products

Spidercontrol Scada Web Server