PT-2026-31601 · Unknown · Hydrosystem Control System

Published

2026-04-09

·

Updated

2026-04-10

·

CVE-2026-34185

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Hydrosystem Control System versions prior to 9.8.5
Description Hydrosystem Control System is susceptible to SQL Injection across numerous scripts and input parameters. The absence of protective measures allows an authenticated attacker to inject arbitrary SQL commands, potentially leading to complete database control.
Recommendations Update to version 9.8.5 or later.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2026-34185

Affected Products

Hydrosystem Control System