Hitachi Energy MicroSCADA SYS600
6 known vulnerabilities in Hitachi Energy MicroSCADA SYS600, 1 critical, with patch priority, exploit likelihood and the news covering them.
Latest vulnerabilities
- CVE-2026-9854 CVSS 8.5 high A vulnerability exists in SYS600 RBAC mechanism where users having access to the engineering tools could elevate their privileges to…
- CVE-2026-9853 CVSS 8.5 high A vulnerability exists in SYS600 which allows any user authenticated to the operating system of the server hosting the application to read…
- CVE-2026-9852 CVSS 4.6 medium A CSV injection vulnerability exists in SYS600. Injected malicious formulas can add or modify data to the spreadsheet, insert links…
- CVE-2024-7941 CVSS 4.3 medium An HTTP parameter may contain a URL value and could cause the web application to redirect the request to the specified URL. By modifying…
- CVE-2024-7940 CVSS 9.8 critical The product exposes a service that is intended for local only to all network interfaces without any authentication.
- CVE-2024-3982 CVSS 8.2 high An attacker with local access to machine where MicroSCADA X SYS600 is installed, could enable the session logging supporting the product…