← Vulnerability feed

Vulnerability record · CVE-2026-19656 · published 12 August 2026

CVE-2026-19656: Scada-lts missing authorization vulnerability

Scada Lts · Scada Lts

ScadaLTS 2.7.8.1 exposes a server-side method that lacks authorization checks, allowing any authenticated user (including one holding only low-privilege, read-only permissions) to execute arbitrary operating system commands on the host. Successful exploitation results in code execution in the context of the ScadaLTS server process (root), leading to full compromise of the underlying system.

9.9 CVSS 3.1 Critical EPSS 0.52% · top 58.1% CWE-862 · Missing authorization
9.9CVSS 3.1 base score
0.52%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
1References
25 Aug 2026Last modified by NVD

Description

ScadaLTS 2.7.8.1 exposes a server-side method that lacks authorization checks, allowing any authenticated user (including one holding only low-privilege, read-only permissions) to execute arbitrary operating system commands on the host. Successful exploitation results in code execution in the context of the ScadaLTS server process (root), leading to full compromise of the underlying system.

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2026-19656 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.8CVE-2023-33472Scada-lts code injection vulnerabilityAn issue was discovered in Scada-LTS v2.7.5.2 build 4551883606 and before, allows remote attackers with low-level authentication to escalate privileg…EPSS 1.3%8.8CVE-2022-41976Scada-lts vulnerabilityAn privilege escalation issue was discovered in Scada-LTS 2.7.1.1 build 2948559113 allows remote attackers, authenticated in the application as a low…EPSS 1.5%6.1CVE-2026-19657Scada-lts cross-site scripting vulnerabilityScadaLTS 2.7.8.1 reflects user-supplied input into an HTML response without sanitization. An unauthenticated attacker who lures a victim into visitin…EPSS 0.28%5.3CVE-2024-7901Scada-lts cross-site scripting vulnerabilityA vulnerability has been found in Scada-LTS 2.7.8 and classified as problematic. Affected by this vulnerability is an unknown functionality of the fi…EPSS 0.36%2.1CVE-2025-13791Scada-lts path traversal vulnerabilityA vulnerability was identified in Scada-LTS up to 2.7.8.1. Affected is the function Common.getHomeDir of the file br/org/scadabr/vo/exporter/ZIPProje…EPSS 0.47%2.1CVE-2025-13790Scada-lts cross-site request forgery vulnerabilityA vulnerability was determined in Scada-LTS up to 2.7.8.1. This impacts an unknown function. This manipulation causes cross-site request forgery. The…EPSS 0.26%2.1CVE-2025-9139Scada-lts information exposure vulnerabilityA vulnerability was determined in Scada-LTS 2.7.8.1. Affected by this vulnerability is an unknown functionality of the file /Scada-LTS/dwr/call/plain…EPSS 0.33%2.0CVE-2025-9388Scada-lts cross-site scripting vulnerabilityA vulnerability was determined in Scada-LTS up to 2.7.8.1. This impacts an unknown function of the file watch_list.shtm. Executing manipulation of th…EPSS 0.29%

Source: NIST National Vulnerability Database (record CVE-2026-19656), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.