CRITICAL

CVE-2018-11311

CVSS v3

9.1

CRITICAL

EPSS Score

40.7%

exploit probability

CISA KEV

No

known exploited

Exploitation

SSVC status

Description

A hardcoded FTP username of myscada and password of Vikuk63 in 'myscadagate.exe' in mySCADA myPRO 7 allows remote attackers to access the FTP server on port 2121, and upload files or list directories, by entering these credentials.

Technical details

Published
5/20/2018

Frequently asked questions

What is CVE-2018-11311?

A hardcoded FTP username of myscada and password of Vikuk63 in 'myscadagate.exe' in mySCADA myPRO 7 allows remote attackers to access the FTP server on port 2121, and upload files or list directories, by entering these credentials.

Is CVE-2018-11311 actively exploited?

Active exploitation of CVE-2018-11311 has not been confirmed. The EPSS score is 40.7%, indicating the estimated probability of exploitation in the next 30 days.

What is the CVSS score for CVE-2018-11311?

CVE-2018-11311 has a CVSS v3 base score of 9.1 (CRITICAL severity).

Is CVE-2018-11311 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.