news.mlab.sh
2 results
vulnerability

Frangoteam FUXA SCADA/HMI

This advisory details a critical vulnerability in Frangoteam FUXA SCADA/HMI software versions up to 1.3.1, allowing unauthenticated remote attackers to enumerate user accounts and role assignments. The vulnerability stems from a flaw in the REST API’s path normalization process, enabling attackers to bypass authenticat…

CISA Advisories · Jun 30, 2026 Critical
vulnerability

Siemens SIMATIC

A vulnerability (CVE-2026-27662) has been identified in Siemens SIMATIC HMI Unified Comfort Panels. The flaw allows an unauthenticated attacker to gain access to the web browser through the help link, potentially enablin…

CISA Advisories · May 14, 2026 High