PT-2025-48393 · Scada-Lts · Scada-Lts

Sh7Err02

+1

·

Published

2025-11-30

·

Updated

2025-11-30

·

CVE-2025-13790

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Scada-LTS versions up to 2.7.8.1
Description A cross-site request forgery condition exists in Scada-LTS. This impacts an unknown function and can be initiated remotely. The exploit has been publicly disclosed. The vendor was contacted regarding this disclosure but did not respond.
Recommendations Versions prior to 2.7.8.1 are affected. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

CSRF

Missing Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-02082
CVE-2025-13790

Affected Products

Scada-Lts