CVE-2024-4872

A vulnerability exists in the query validation of the MicroSCADA Pro/X SYS600 product. If exploited this could allow an authenticated attacker to inject code towards persistent data. Note that to successfully exploit this vulnerability an attacker must have a valid credential.

  • Published Aug 27, 2024
  • CVSS 8.8 high
  • 0.5% chance of exploitation in the next 30 days (EPSS)

Affected software

In the news

CVE-2024-4872 at the National Vulnerability Database