CVE-2026-82789: High severity CONPROSYS HMI System (CHS) vulnerability
Published Sep 14, 2026
·Updated
An improper neutralization of directives in dynamically evaluated code ('Eval Injection') issue exists in CONPROSYS HMI System(CHS). If exploited, arbitrary code may be executed by an attacker who can log in to the product.
Affected Software
1 affected component
CONPROSYS HMI System (CHS)
Event History
Sep 14, 2026
CVE Published
via MITRE·06:44 AM
Data Sourced
via MITRE·06:44 AM
DescriptionSeverity
Frequently Asked Questions
1
Who can exploit this issue?
An attacker must be able to log in to CONPROSYS HMI System (CHS). The issue is remotely exploitable and does not require user interaction.
2
What could a successful attack allow?
Successful exploitation may allow the authenticated attacker to execute arbitrary code. The reported impact includes high confidentiality, integrity, and availability impact.