PoC Index

CVE-2023-30459

HIGH 7.2EPSS 2.1%

SmartPTT SCADA 1.1.0.0 allows remote code execution (when the attacker has administrator privileges) by writing a malicious C# script and executing it on the server (via server settings in the administrator control panel on port 8101, by default).

CVSS v3.1
7.2 HIGHCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CVSS v3.1
7.2 HIGHCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
EPSS
2.11% chance of exploitation in the next 30 days, 80th percentile
Published
2023-04-14
Updated
2025-02-06

Proof-of-concept exploits (1)

References

Related