Horizon Alert
Summary of the vulnerability and why it matters
A vulnerability in the mySCADA myPRO Manager's command API allows unauthenticated attackers with network access to perform privileged management functions. This could potentially expose sensitive control system operations to unauthorized manipulation.
- Unauthenticated access to critical management functions.
- Confirms exposure of industrial control system APIs.
- Assess relevance and potential impact to operations.
Attack Path
How an attacker could exploit the issue
An attacker on the network could access the mySCADA myPRO Manager command API without needing any credentials. This could allow them to perform privileged management actions on the system.
- Network access and no authentication required.
- Accessing the command API.
- Unauthorized privileged actions.
Live Threat
Current exploitation, exposure, and threat context
An unauthenticated attacker with network access to the mySCADA myPRO Manager command API could exploit this vulnerability to access privileged management functions, potentially impacting system control and configuration.
- System management functions and configuration.
- Via unauthenticated network access to the API.
- Unauthorized system control and access.
Operational Fix
Recommended remediation, mitigation, and detection steps
This vulnerability in mySCADA myPRO Manager's command API requires immediate attention from teams managing industrial control systems and operational technology. The first step is to identify all instances of the affected software, determine their network accessibility and criticality to operations, and then locate the specific system owners responsible for remediation.
- Ownership: OT, Platform, or Application teams.
- Verify first: Network exposure and business criticality.
- Action: Plan remediation based on identified risk.