CVE-2026-8605: Use of Hard-coded Credentials in ScadaBR
Published May 19, 2026
·Updated
In ScadaBR version 1.2.0, a Use of Hard-Coded Credentials vulnerability could allow an attacker to access the SCADA system as admin.
Affected Software
2 affected components
ScadaBR ScadaBR=1.2.0
ScadaBR ScadaBR=1.2
Event History
May 19, 2026
CVE Published
via MITRE·05:08 PM
Data Sourced
via MITRE·05:08 PM
DescriptionWeakness
Data Sourced
via NVD·06:16 PM
DescriptionSeverityWeaknessAffected Software
Oct 13, 58358
Event
via FIRST·06:49 PM
Frequently Asked Questions
1
What is the severity of CVE-2026-8605?
The severity of CVE-2026-8605 is rated as medium with a score of 5.1.
2
What type of threat does CVE-2026-8605 represent?
CVE-2026-8605 represents a use of hard-coded credentials threat in ScadaBR.
3
How do I fix CVE-2026-8605?
To fix CVE-2026-8605, update ScadaBR to a version that removes the hard-coded credentials.
4
What system does CVE-2026-8605 affect?
CVE-2026-8605 affects the ScadaBR system, specifically version 1.2.0.
5
What could an attacker do by exploiting CVE-2026-8605?
An attacker exploiting CVE-2026-8605 could gain unauthorized access to the SCADA system as an admin.