PT-2025-32416 · Scada-Lts · Scada-Lts

Marceloqz

·

Published

2025-08-08

·

Updated

2025-08-09

·

CVE-2025-8743

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Scada-LTS versions prior to 2.7.8.2
Description A cross-site scripting issue exists in Scada-LTS Virtual Data Source Property Handler. The manipulation of the Name argument in the /data source edit.shtm file can lead to exploitation. The attack can be initiated remotely. The exploit has been publicly disclosed.
Recommendations Update Scada-LTS to a version prior to 2.7.8.2.

Exploit

Fix

XSS

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2025-8743

Affected Products

Scada-Lts