Vulnerabilities (CVE)

Filtered by vendor Measuresoft Subscribe
Filtered by product Scadapro
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2011-3496 1 Measuresoft 1 Scadapro 2023-12-10 10.0 HIGH N/A
service.exe in Measuresoft ScadaPro 4.0.0 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) BF, (2) OF, or (3) EF command.
CVE-2011-3490 1 Measuresoft 1 Scadapro 2023-12-10 10.0 HIGH N/A
Multiple stack-based buffer overflows in service.exe in Measuresoft ScadaPro 4.0.0 and earlier allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long command to port 11234, as demonstrated with the TF command.
CVE-2011-3497 1 Measuresoft 1 Scadapro 2023-12-10 10.0 HIGH N/A
service.exe in Measuresoft ScadaPro 4.0.0 and earlier allows remote attackers to execute arbitrary DLL functions via the XF function, possibly related to an insecure exposed method.
CVE-2011-3495 1 Measuresoft 1 Scadapro 2023-12-10 10.0 HIGH N/A
Multiple directory traversal vulnerabilities in service.exe in Measuresoft ScadaPro 4.0.0 and earlier allow remote attackers to read, modify, or delete arbitrary files via the (1) RF, (2) wF, (3) UF, or (4) NF command.