CVE-2021-43987

An additional, nondocumented administrative account exists in mySCADA myPRO Versions 8.20.0 and prior that is not exposed through the web interface, which cannot be deleted or changed through the regular web interface.
References
Link Resource
https://www.cisa.gov/uscert/ics/advisories/icsa-21-355-01 Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

cpe:2.3:a:myscada:mypro:*:*:*:*:*:*:*:*

History

29 Dec 2021, 19:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : 7.5
v3 : 9.8
CPE cpe:2.3:a:myscada:mypro:*:*:*:*:*:*:*:*
References (MISC) https://www.cisa.gov/uscert/ics/advisories/icsa-21-355-01 - (MISC) https://www.cisa.gov/uscert/ics/advisories/icsa-21-355-01 - Third Party Advisory, US Government Resource
First Time Myscada mypro
Myscada

23 Dec 2021, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2021-12-23 20:15

Updated : 2023-12-10 14:09


NVD link : CVE-2021-43987

Mitre link : CVE-2021-43987

CVE.ORG link : CVE-2021-43987


JSON object : View

Products Affected

myscada

  • mypro
CWE
CWE-912

Hidden Functionality