CVE-2024-7941: Hitachienergy Microscada X SYS600
Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.
An HTTP parameter may contain a URL value and could cause the web application to redirect the request to the specified URL. By modifying the URL value to a malicious site, an attacker may successfully launch a phishing scam and steal user credentials.
Affected products
- Hitachienergy Microscada X SYS600: version 10.5 only
Published 2024-08-27. Last modified 2026-06-17.