Metrics
Affected Vendors & Products
Tue, 19 Aug 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 19 Aug 2025 13:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was determined in Scada-LTS 2.7.8.1. Affected by this vulnerability is an unknown functionality of the file /Scada-LTS/dwr/call/plaincall/WatchListDwr.init.dwr. Executing manipulation can lead to information disclosure. The attack may be performed from a remote location. The exploit has been publicly disclosed and may be utilized. The vendor explains: "[T]he risks of indicated vulnerabilities seem to be minimal as all scenarios likely require admin permissions. Moreover, regardless our team fixes those vulnerabilities - the overall risk change to the user due to malicious admin actions will not be lower." | |
Title | Scada-LTS WatchListDwr.init.dwr information disclosure | |
Weaknesses | CWE-200 CWE-284 |
|
References |
|
|
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-08-19T13:02:06.113Z
Updated: 2025-08-19T13:36:16.302Z
Reserved: 2025-08-19T05:39:41.122Z
Link: CVE-2025-9139

Updated: 2025-08-19T13:20:50.893Z

Status : Awaiting Analysis
Published: 2025-08-19T13:15:42.400
Modified: 2025-08-19T14:15:44.307
Link: CVE-2025-9139

No data.