← Back to browse · API

CVE-2022-41976

Severity
CRITICAL
CVSS
9.9
EPSS
0.01626
Risk score
40.17
CISA KEV
No
PoC
No
Published
2023-04-10
Modified
2025-02-12
First seen
2026-08-07
Aliases
EUVD-2022-45080, GHSA-XF2C-W6QX-WGHM
Products
n/a:n/a n/a
Sources
euvd EUVD-2022-45080

Description

An privilege escalation issue was discovered in Scada-LTS 2.7.1.1 build 2948559113 allows remote attackers, authenticated in the application as a low-privileged user to change role (e.g., to administrator) by updating their user profile.

References