SQL injection vulnerability in Ecava IntegraXor SCADA Server Stable 4.1.4360 and earlier and Beta 4.1.4392 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2014-2413 | SQL injection vulnerability in Ecava IntegraXor SCADA Server Stable 4.1.4360 and earlier and Beta 4.1.4392 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified vectors. |
Fixes
Solution
Ecava has produced a patch to address all four vulnerabilities identified. The patch can be downloaded from: http://www.integraxor.com/download/rc.msi?4.2.4458
Workaround
No workaround given by the vendor.
References
History
Mon, 13 Oct 2025 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Ecava IntegraXor SCADA Server SQL Injection | |
| References |
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-10-13T22:46:29.711Z
Reserved: 2014-03-13T00:00:00
Link: CVE-2014-2376
No data.
Status : Deferred
Published: 2014-09-15T14:55:11.150
Modified: 2025-10-13T23:15:35.037
Link: CVE-2014-2376
No data.
OpenCVE Enrichment
No data.
EUVD