← Back to browse · API

CVE-2024-47407

Severity
CRITICAL
CVSS
10.0
EPSS
0.64168
Risk score
62.46
CISA KEV
No
PoC
No
Published
2024-11-22
Modified
2024-11-25
First seen
2026-08-07
Aliases
EUVD-2024-42766, GHSA-HC88-RHV5-92JQ
Products
mySCADA:myPRO Manager 0 <1.3, mySCADA:myPRO Runtime 0 <9.2.1
Sources
euvd EUVD-2024-42766

Description

A parameter within a command does not properly validate input within myPRO Manager which could be exploited by an unauthenticated remote attacker to inject arbitrary operating system commands.

References