Sensorweb ScadaBR是Sensorweb公司的一套用于开发自动化数据采集和监控应用程序的开源软件。 Sensorweb ScadaBR 1.2.0版本存在访问控制错误漏洞,该漏洞源于关键功能缺少身份验证,可能导致未经身份验证的攻击者发送HTTP GET请求并注入任意传感器读数。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-8605 | Use of Hard-coded Credentials in ScadaBR | |
| CVE-2026-8603 | Improper neutralization of special elements used in an OS command ('OS command injection') | |
| CVE-2026-8604 | Cross-Site request forgery (CSRF) in ScadaBR |
No comments yet