Scadaengine develops a focused line of industrial automation and building control software centered on BACnet protocol implementations, specifically OPC server and client applications that bridge legacy and modern control systems. The observed vulnerability pattern clusters around memory-safety and input-validation issues inherent to protocol-parsing and interoperability layers in such bridging software. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Scadaengine over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2010-4740HIGH Stack-based buffer overflow in WTclient.dll in SCADA Engine BACnet OPC Client before 1.0.25 allows user-assisted remote attackers to execute arbitrary code via a crafted .csv file, | Feb 16, 2011 | 9.3 | 69 | NO | YES |
CVE-2015-0979HIGH Heap-based buffer overflow in the SOAP web interface in SCADA Engine BACnet OPC Server before 2.1.371.24 allows remote attackers to execute arbitrary code via a crafted packet. | Mar 14, 2015 | 9.0 | 24 | NO | NO |
CVE-2015-0980HIGH Format string vulnerability in BACnOPCServer.exe in the SOAP web interface in SCADA Engine BACnet OPC Server before 2.1.371.24 allows remote attackers to execute arbitrary code via | Mar 14, 2015 | 9.0 | 23 | NO | NO |
CVE-2015-0981HIGH The SOAP web interface in SCADA Engine BACnet OPC Server before 2.1.371.24 allows remote attackers to bypass authentication and read or write to arbitrary database fields via unspe | Mar 14, 2015 | 7.5 | 20 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Scadaengine.
Media articles that mention a CVE ID that affects a product developed by Scadaengine — matched by CVE ID, not by vendor name.