CVE-2014-2376

Ecava IntegraXor SCADA Server <4.1.4360 - SQL Injection

Title source: llm
STIX 2.1

Description

SQL injection vulnerability in Ecava IntegraXor SCADA Server Stable 4.1.4360 and earlier and Beta 4.1.4392 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

References (2)

Core 2
Core References
Patch, Third Party Advisory, US Government Resource
https://ics-cert.us-cert.gov/advisories/ICSA-14-224-01
Third Party Advisory, US Government Resource
https://www.cisa.gov/news-events/ics-advisories/icsa-14-224-01

Scores

EPSS 0.0204
EPSS Percentile 79.1%

Details

CWE
CWE-89
Status published
Products (4)
ecava/integraxor < 4.1.4360
ecava/integraxor < 4.1.4392
Ecava/IntegraXor SCADA Server < v4.1.4360
Ecava/IntegraXor SCADA Server < v4.1.4392
Published Sep 15, 2014
Tracked Since Feb 18, 2026