CVE-2017-12728: Spidercontrol Scada Webserver
High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.
An Improper Privilege Management issue was discovered in SpiderControl SCADA Web Server Version 2.02.0007 and prior. Authenticated, non-administrative local users are able to alter service executables with escalated privileges, which could allow an attacker to execute arbitrary code under the context of the current system services.
Affected products
- Spidercontrol Scada Webserver: up to and including 2.02.0007
Published 2017-10-05. Last modified 2026-06-17.