Vulnerabilities (CVE)

Filtered by vendor Smartptt Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-43937 1 Smartptt 1 Scada Server 2022-05-11 6.8 MEDIUM 8.8 HIGH
Elcomplus SmartPTT SCADA Server web application does not, or cannot, sufficiently verify whether a well-formed, valid, consistent request was intentionally provided by the user who submitted the request.
CVE-2021-43939 1 Smartptt 1 Smartptt Scada 2022-05-09 9.0 HIGH 8.8 HIGH
Elcomplus SmartPTT is vulnerable when a low-authenticated user can access higher level administration authorization by issuing requests directly to the desired endpoints.