Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SCADA Data Gateway — Vulnerabilities & Security Advisories 17

All 17 CVE vulnerabilities found in SCADA Data Gateway, with AI-generated Chinese analysis, references, and POCs.

This page documents vulnerabilities associated with the SCADA Data Gateway product category, specifically focusing on information exposure and access control weaknesses. It aggregates findings from major vendors and independent security research groups to provide a centralized view of known security flaws. The collection covers vulnerabilities identified between January 2018 and December 2023, ensuring a comprehensive historical perspective on the evolving threat landscape for industrial control system data gateways. Here, security professionals and system administrators can track vendor advisories as they are released, allowing for timely risk assessment and patch planning. Users can also deepen their understanding of specific weakness classes by examining how different implementations of SCADA Data Gateways are affected by similar logical or architectural flaws. Additionally, the page serves as a lookup tool for reviewing a specific product’s vulnerability history, highlighting recurring issues that may indicate systemic design problems rather than isolated incidents. This resource is intended to support proactive security management by providing clear, structured data on the current state of known issues. It does not include speculative or unconfirmed reports, ensuring that the information presented is reliable and actionable for operational technology security teams responsible for maintaining the integrity of critical infrastructure data flows.

Vendor: Triangle MicroWorks

CVE IDTitleCVSSSeverityPublished
CVE-2022-0369 Triangle MicroWorks SCADA Data Gateway Restore Workspace Directory Traversal Remote Code Execution Vulnerability CWE-22 8.8AIHighAI2024-05-07
CVE-2023-39468 Triangle MicroWorks SCADA Data Gateway DbasSectorFileToExecuteOnReset Exposed Dangerous Function Remote Code Execution Vulnerability CWE-749 8.8 -2024-05-03
CVE-2023-39467 Triangle MicroWorks SCADA Data Gateway certificate Information Disclosure Vulnerability CWE-219 7.5 -2024-05-03
CVE-2023-39466 Triangle MicroWorks SCADA Data Gateway get_config Missing Authentication Information Disclosure Vulnerability CWE-306 7.5 -2024-05-03
CVE-2023-39465 Triangle MicroWorks SCADA Data Gateway Use of Hard-coded Cryptograhic Key Information Disclosure Vulnerability CWE-321 7.5 -2024-05-03
CVE-2023-39463 Triangle MicroWorks SCADA Data Gateway Trusted Certification Unrestricted Upload of File Remote Code Execution Vulnerability CWE-434 8.8 -2024-05-03
CVE-2023-39464 Triangle MicroWorks SCADA Data Gateway GTWWebMonitorService Unquoted Search Path Remote Code Execution Vulnerability CWE-428 8.8 -2024-05-03
CVE-2023-39462 Triangle MicroWorks SCADA Data Gateway Workspace Unrestricted Upload Vulnerability CWE-434 8.8 -2024-05-03
CVE-2023-39461 Triangle MicroWorks SCADA Data Gateway Event Log Improper Output Neutralization For Logs Arbitrary File Write Vulnerability CWE-117 8.8 -2024-05-03
CVE-2023-39459 Triangle MicroWorks SCADA Data Gateway Directory Traversal Arbitrary File Creation Vulnerability CWE-22 5.5 -2024-05-03
CVE-2023-39460 Triangle MicroWorks SCADA Data Gateway Event Log Directory Traversal Arbitrary File Creation Vulnerability CWE-22 6.5 -2024-05-03
CVE-2023-39458 Triangle MicroWorks SCADA Data Gateway Use of Hard-coded Credentials Authentication Bypass Vulnerability CWE-798 8.8 -2024-05-03
CVE-2023-39457 Triangle MicroWorks SCADA Data Gateway Missing Authentication Vulnerability CWE-306 9.8 -2024-05-03
CVE-2023-2187 Triangle MicroWorks SCADA Data Gateway 安全漏洞 CWE-306 5.3 Medium2023-06-07
CVE-2023-2186 Triangle MicroWorks SCADA Data Gateway 格式化字符串错误漏洞 CWE-134 8.2 High2023-06-07
CVE-2014-2342 Triangle MicroWorks SCADA Data Gateway Resource Exhaustion CWE-400 7.5 -2014-05-30
CVE-2014-2343 Triangle MicroWorks SCADA Data Gateway Resource Exhaustion CWE-400 4.6 -2014-05-30

All 17 known CVE vulnerabilities affecting SCADA Data Gateway with full Chinese analysis, references, and POCs where available.