Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-28829 | A vulnerability was detected in Scada-LTS up to 2.7.8.1. The affected element is an unknown function of the file maintenance_events.shtm. The manipulation of the argument Alias results in cross site scripting. The attack can be executed remotely. The exploit is now public and may be used. |
Thu, 11 Sep 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:scada-lts:scada-lts:*:*:*:*:*:*:*:* |
Thu, 21 Aug 2025 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Scada-lts
Scada-lts scada-lts |
|
| Vendors & Products |
Scada-lts
Scada-lts scada-lts |
Thu, 21 Aug 2025 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 20 Aug 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in Scada-LTS up to 2.7.8.1. The affected element is an unknown function of the file maintenance_events.shtm. The manipulation of the argument Alias results in cross site scripting. The attack can be executed remotely. The exploit is now public and may be used. | |
| Title | Scada-LTS maintenance_events.shtm cross site scripting | |
| Weaknesses | CWE-79 CWE-94 |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-08-20T17:27:53.599Z
Reserved: 2025-08-20T10:51:58.077Z
Link: CVE-2025-9234
Updated: 2025-08-20T17:27:45.435Z
Status : Analyzed
Published: 2025-08-20T17:15:38.810
Modified: 2026-04-29T01:00:01.613
Link: CVE-2025-9234
No data.
OpenCVE Enrichment
Updated: 2025-08-21T12:30:48Z
EUVD