All versions of InSAT MasterSCADA BUK-TS are susceptible to OS command injection through a field in its MMadmServ web interface. Malicious users that use the vulnerable endpoint are potentially able to cause remote code execution.
Metrics
Affected Vendors & Products
References
History
Fri, 27 Feb 2026 03:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Insat masterscada
|
|
| CPEs | cpe:2.3:a:insat:masterscada:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Insat masterscada
|
Wed, 25 Feb 2026 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Insat
Insat masterscada Buk-ts |
|
| Vendors & Products |
Insat
Insat masterscada Buk-ts |
Tue, 24 Feb 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | All versions of InSAT MasterSCADA BUK-TS are susceptible to OS command injection through a field in its MMadmServ web interface. Malicious users that use the vulnerable endpoint are potentially able to cause remote code execution. | |
| Title | InSAT MasterSCADA BUK-TS OS Command Injection | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: icscert
Published: 2026-02-24T20:56:14.099Z
Updated: 2026-02-26T19:39:01.753Z
Reserved: 2026-02-09T17:52:06.925Z
Link: CVE-2026-22553
No data.
Status : Analyzed
Published: 2026-02-24T21:16:28.713
Modified: 2026-02-27T03:15:54.487
Link: CVE-2026-22553
No data.