SQL Injection Vulnerability in PROCON-WEB SCADA by PROCON
CVE-2026-16462
9.3CRITICAL
What is CVE-2026-16462?
An unprotected endpoint in PROCON-WEB SCADA allows unauthenticated remote attackers to execute arbitrary SQL commands through improper input sanitization. This vulnerability poses significant risks to the integrity and security of the system, enabling unauthorized access to sensitive data and potential manipulation of the underlying database.
Affected Version(s)
PROCON-WEB SCADA 1.0.0 <= 6.11.2
