← back
CVE-2026-9645

ScadaBR Authenticated Remote Code Execution

CVSS 9.9 CRITICALEPSS 0.3%CWE-78
Exposed methods allow authenticated users to create and execute arbitrary JavaScript code on the server. The scripts execute with full access, enabling complete system compromise as commands are executed as root.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Affected products
ScadaBR · ScadaBR

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →