7.2
CVSSv3

CVE-2023-30459

Published: 14/04/2023 Updated: 25/04/2023
CVSS v3 Base Score: 7.2 | Impact Score: 5.9 | Exploitability Score: 1.2
VMScore: 0

Vulnerability Summary

SmartPTT SCADA 1.1.0.0 allows remote code execution (when the attacker has administrator privileges) by writing a malicious C# script and executing it on the server (via server settings in the administrator control panel on port 8101, by default).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

smartptt smartptt scada 1.1

Github Repositories

CVE-2023-30459

CVE-2023-30459 SmartPTT SCADA 1100 allows remote code execution (when the attacker has administrator privileges) by writing a malicious C# script and executing it on the server (via server settings in the administrator control panel on port 8101, by default) How to use: python CVE-2023-30459py -t 127001 -p elcomplus -cmd "shutdown /s /t 30" PoC: