CVE-2025-39204
Severity CVSS v4.0:
HIGH
Type:
CWE-200
Information Leak / Disclosure
Publication date:
24/06/2025
Last modified:
26/06/2025
Description
A vulnerability exists in the Web interface of the MicroSCADA X SYS600 product. The filtering query in the Web interface can be malformed, so returning data can leak unauthorized information to the user.
Impact
Base Score 4.0
8.50
Severity 4.0
HIGH
Base Score 3.x
6.50
Severity 3.x
MEDIUM