CVE-2025-20014
CVE-2025-20014: mySCADA myPRO Improper Command Neutralization. This vulnerability allows attackers to execute arbitrary commands on a vulnerable system due to insufficient sanitization of POST requests containing version information sent to a specific port. While the CVSS score is low (0), indicating minimal immediate impact according to that system, SOCRadar's SVRS gives this a score of 44. The improper neutralization of commands means a remote attacker could potentially gain unauthorized access and control. This poses a significant risk to the integrity and availability of mySCADA myPRO systems. Although the SVRS is not critical (above 80), this command execution vulnerability should be addressed to prevent potential exploitation, especially considering it is tagged as "In The Wild".
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.