PT-2026-21799 · Insat · Insat Masterscada Buk-Ts

Adem El Adeb

·

Published

2025-11-09

·

Updated

2026-02-27

·

CVE-2026-21410

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions InSAT MasterSCADA BUK-TS (affected versions not specified)
Description InSAT MasterSCADA BUK-TS is susceptible to SQL Injection through its main web interface. Successful exploitation allows malicious users to potentially cause remote code execution. The issue does not require any privileges or user interaction and has a high impact on confidentiality, integrity, and availability. The vulnerable endpoint allows for this exploitation.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

SQL injection

Weakness Enumeration

Related Identifiers

BDU:2025-13914
CVE-2026-21410

Affected Products

Insat Masterscada Buk-Ts