First published: Thu Dec 23 2021(Updated: )
An additional, nondocumented administrative account exists in mySCADA myPRO Versions 8.20.0 and prior that is not exposed through the web interface, which cannot be deleted or changed through the regular web interface.
Credit: ics-cert@hq.dhs.gov ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
mySCADA myPRO Manager | <=8.20.0 | |
mySCADA myPRO Manager | <=8.20.0 |
mySCADA recommends users upgrade to Version 8.22.0 or higher. For more information, contact mySCADA technical support.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-43987 is considered a high severity vulnerability due to the presence of an undocumented administrative account that poses a security risk.
To mitigate CVE-2021-43987, it is recommended to upgrade mySCADA myPRO to a version higher than 8.20.0.
The risks associated with CVE-2021-43987 include unauthorized access to sensitive data and system controls due to the undocumented administrative account.
Yes, CVE-2021-43987 can potentially be exploited remotely, allowing attackers to gain administrative access without proper authorization.
CVE-2021-43987 is not present in newer versions released after 8.20.0, so upgrading is crucial for security.