First published: Sun May 20 2018(Updated: )
A hardcoded FTP username of myscada and password of Vikuk63 in 'myscadagate.exe' in mySCADA myPRO 7 allows remote attackers to access the FTP server on port 2121, and upload files or list directories, by entering these credentials.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
mySCADA myPRO Manager | =7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-11311 is considered a high severity vulnerability due to its potential for unauthorized FTP access.
To mitigate CVE-2018-11311, change the hardcoded FTP credentials in 'myscadagate.exe' and restrict access to the FTP server.
CVE-2018-11311 allows attackers to upload files and list directories on the FTP server, leading to potential data breaches.
CVE-2018-11311 affects mySCADA myPRO version 7.0 due to the hardcoded FTP credentials.
Yes, CVE-2018-11311 can be exploited remotely by attackers who leverage the hardcoded FTP username and password.