Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Rapidscada

First CVE: Mar 8, 2018Active for: 8 yearsTotal CVEs: 11
25.0
VTI Score
Low

Rapidscada develops an open-source industrial control system platform widely deployed in infrastructure and OT environments, concentrating its vulnerability exposure in a single product line. The recurring weakness classes—path traversal, permission mishandling, credential exposure, cross-site scripting, and sensitive-information leakage in error messages—reflect the authentication, access control, and web-interface demands of an ICS product serving both operator and administrative functions, with a meaningful share of disclosures reaching serious severity. Defenders should inventory Rapidscada instances in operational networks and prioritize patching for web-facing administrative interfaces; current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
11
Total CVEs
More Total CVEs than 92% of tracked vendors
2.8
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 91% of tracked vendors
7.1
Avg CVSS Score
Higher Avg CVSS Score than 52% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Rapidscada over time

Volume of CVEsAvg CVSS Base Score
First CVE
Mar 8, 2018
8 years ago
Most Recent CVE
Sep 22, 2024
670 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (11 CVEs).

11 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2024-21764CRITICAL
In Rapid Software LLC's Rapid SCADA versions prior to Version 5.8.4, the product uses hard-coded credentials, which may allow an attacker to connect to a specific port.
Feb 2, 20249.826NONO
CVE-2020-22722HIGH
Rapid Software LLC Rapid SCADA 5.8.0 is affected by a local privilege escalation vulnerability in the ScadaAgentSvc.exe executable file. An attacker can obtain admin privileges by
Aug 14, 20207.825NONO
CVE-2018-5313HIGH
A vulnerability allows local attackers to escalate privilege on Rapid Scada 5.5.0 because of weak C:\SCADA permissions. The specific flaw exists within the access control that is s
Mar 8, 20187.825NONO
CVE-2024-21852HIGH
In Rapid Software LLC's Rapid SCADA versions prior to Version 5.8.4, an attacker can supply a malicious configuration file by utilizing a Zip Slip vulnerability in the unpacking ro
Feb 1, 20248.824NONO
CVE-2024-22016HIGH
In Rapid Software LLC's Rapid SCADA versions prior to Version 5.8.4, an authorized user can write directly to the Scada directory. This may allow privilege escalation.
Feb 2, 20247.822NONO
CVE-2024-47221HIGH
CheckUser in ScadaServerEngine/MainLogic.cs in Rapid SCADA through 5.8.4 allows an empty password.
Sep 22, 20247.521NONO
CVE-2022-44153MEDIUM
Rapid Software LLC Rapid SCADA 5.8.4 is vulnerable to Cross Site Scripting (XSS).
Dec 7, 20226.121NONO
CVE-2024-22096MEDIUM
In Rapid Software LLC's Rapid SCADA versions prior to Version 5.8.4, an attacker can append path traversal characters to the filename when using a specific command, allowing them t
Feb 2, 20246.517NONO
CVE-2024-21869MEDIUM
In Rapid Software LLC's Rapid SCADA versions prior to Version 5.8.4, the affected product stores plaintext credentials in various places. This may allow an attacker with local acce
Feb 2, 20245.517NONO
CVE-2024-21866MEDIUM
In Rapid Software LLC's Rapid SCADA versions prior to Version 5.8.4, the affected product responds back with an error message containing sensitive data if it receives a specific ma
Feb 2, 20245.317NONO
View all 11 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products11 CVEs
45%
45%
9%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local4 (36.4%)
Network7 (63.6%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low11 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None9 (81.8%)
Unknown0 (0.0%)
Required2 (18.2%)
Privileges Required
Low7 (63.6%)
High0 (0.0%)
None4 (36.4%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (11 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Rapidscada.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Rapidscada — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Rapidscada's Products

View all 2 CNAs →

Top CWEs