SQL injection vulnerability in Ecava IntegraXor SCADA Server Stable 4.1.4360 and earlier and Beta 4.1.4392 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2014-2413 | SQL injection vulnerability in Ecava IntegraXor SCADA Server Stable 4.1.4360 and earlier and Beta 4.1.4392 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified vectors. |
Fixes
Solution
Ecava has produced a patch to address all four vulnerabilities identified. The patch can be downloaded from: http://www.integraxor.com/download/rc.msi?4.2.4458
Workaround
No workaround given by the vendor.
References
History
Mon, 13 Oct 2025 23:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Title | Ecava IntegraXor SCADA Server SQL Injection | |
References |
|

Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-10-13T22:46:29.711Z
Reserved: 2014-03-13T00:00:00
Link: CVE-2014-2376

No data.

Status : Deferred
Published: 2014-09-15T14:55:11.150
Modified: 2025-10-13T23:15:35.037
Link: CVE-2014-2376

No data.

No data.