VendorsSpiderControlscada_webserverall versions
Vulnerabilities

SpiderControl SCADA WebServer

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2017-12728
An Improper Privilege Management issue was discovered in SpiderControl SCADA Web Server Version 2.02.0007 and prior. Authenticated, non-administrative local users are able to alter service executables with escalated privileges, which could allow an attacker to execute arbitrary code under the context of the current system services.
Published 2017-10-04 · Modified
7.8EPSS 0.004
CVE-2018-18991
Reflected cross-site scripting (non-persistent) in SCADA WebServer (Versions prior to 2.03.0001) could allow an attacker to send a crafted URL that contains JavaScript, which can be reflected off the web application to the victim's browser.
Published 2018-12-04 · Modified
6.1EPSS 0.009