The WAP interface in Trihedral VTScada (formerly VTS) 8.x through 11.x before 11.2.02 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via unspecified vectors.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HTrihedral Vtscada
APPTrihedral8.0.05 – 11.2.02 (excl.)
CISA KEV — detailsi
- Vendori
- Trihedral
- Producti
- VTScada (formerly VTS)
- Added to KEVi
- April 15, 2022
- Remediation deadline (US Federal)i
- May 6, 2022(overdue)
Apply updates per vendor instructions.
The WAP interface in Trihedral VTScada (formerly VTS) allows remote attackers to cause a denial-of-service (DoS).
Related vulnerabilities
Auth Bypass w interfejsie WAP Trihedral VTScada — odczyt dowolnych plików
Path Traversal w interfejsie WAP Trihedral VTScada – odczyt dowolnych plików
An Improper Input Validation vulnerability exists in Trihedral VTScada version 12.0.38 and prior. A specifical...
An Improper Access Control issue was discovered in Trihedral VTScada 11.3.03 and prior. A local, non-administr...
An Uncontrolled Search Path Element issue was discovered in Trihedral VTScada 11.3.03 and prior. The program w...