First published: Fri Nov 22 2024(Updated: )
An OS Command Injection vulnerability exists within myPRO Manager. A parameter within a command can be exploited by an unauthenticated remote attacker to inject arbitrary operating system commands.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
mySCADA myPRO Manager |
mySCADA recommends updating to the latest versions: * mySCADA PRO Manager 1.3 https://www.myscada.org/resources/ * mySCADA PRO Runtime 9.2.1 https://www.myscada.org/resources/
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-52034 is rated as a high severity vulnerability due to its potential for remote exploitation.
To fix CVE-2024-52034, update to the latest version of myPRO Manager that addresses this vulnerability.
CVE-2024-52034 affects all versions of myPRO Manager by mySCADA.
Yes, CVE-2024-52034 can be exploited remotely by unauthenticated attackers.
The impact of CVE-2024-52034 includes the potential execution of arbitrary operating system commands.