Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2024-7941 1 Hitachienergy 1 Microscada X Sys600 2024-10-30 4.3 Medium
An HTTP parameter may contain a URL value and could cause the web application to redirect the request to the specified URL. By modifying the URL value to a malicious site, an attacker may successfully launch a phishing scam and steal user credentials.
CVE-2024-7940 1 Hitachienergy 1 Microscada X Sys600 2024-08-28 8.3 High
The product exposes a service that is intended for local only to all network interfaces without any authentication.