CriticalCritical vulnerability
CVE-2026-73807 (CVSS 9.3)
NVD · officialPublished Sep 15, 2026Risk 50/100EPSS 0.7%
The mySCADA myPRO Manager command API does not properly enforce authentication for privileged functions. An unauthenticated attacker with network access to the affected API could exploit this vulnerability to access privileged management functions.
Technical details
CVSS
9.3
AV:NetworkAC:LowPR:NoneUI:None
Evidence and sources
This record is attributed to NVD. Exploitation status and remediation guidance are kept separate from the vulnerability's technical severity.
Open primary source