CVE-2026-73807EPSS p54.3%
CVE-2026-73807CVE-2026-73807
Description
The mySCADA myPRO Manager command API does not properly enforce authentication for privileged functions. An unauthenticated attacker with network access to the affected API could exploit this vulnerability to access privileged management functions.
Scoring
| CVSS | 9.8 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 0.78% probability of exploitation · percentile 54.3% · 2026-10-05T12:00:23Z |
| Last modified | 2026-09-18 |