Elcomplus SmartPTT SCADA Server is vulnerable to an unauthenticated user can request various files from the server without any authentication or authorization.
Metrics
Affected Vendors & Products
Fixes
Solution
Elcomplus has released an update to fix these vulnerabilities and recommends users upgrade to Version 2.3.4 or later. For more information, please contact Elcomplus support.
Workaround
No workaround given by the vendor.
References
Link | Providers |
---|---|
https://www.cisa.gov/uscert/ics/advisories/icsa-22-109-05 |
![]() ![]() |
History
Wed, 16 Apr 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-04-16T17:54:48.244Z
Reserved: 2021-11-16T00:00:00.000Z
Link: CVE-2021-43938

Updated: 2024-08-04T04:10:17.167Z

Status : Modified
Published: 2022-04-29T16:15:08.020
Modified: 2024-11-21T06:30:02.417
Link: CVE-2021-43938

No data.

No data.