CVE-2025-24865: Myscada Mypro
Critical severity, CVSS 9.8. EPSS: 7.2% chance of exploitation in the next 30 days.
The administrative web interface of mySCADA myPRO Manager can be accessed without authentication which could allow an unauthorized attacker to retrieve sensitive information and upload files without the associated password.
Affected products
- Myscada Mypro: before 1.4 (fixed in 1.4)
Published 2025-02-13. Last modified 2026-06-17.