CVE-2016-4523: Trihedral VTScada (formerly VTS) Denial-of-Service Vulnerability

High severity, CVSS 7.5. Actively exploited: in CISA KEV since 2022-04-15. EPSS: 31.2% chance of exploitation in the next 30 days.

The WAP interface in Trihedral VTScada (formerly VTS) 8.x through 11.x before 11.2.02 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via unspecified vectors.

Affected products

  • Trihedral VTScada: from 8.0.05, before 11.2.02 (fixed in 11.2.02)

Published 2016-06-09. Last modified 2026-06-17.