mySCADA myPRO Manager
ICS Advisory for mySCADA myPRO Manager with CVE-2026-73807 and CVE-2026-82567 vulnerabilities.
Intelligence analysis by Qwen 2.5 (3B)
CISA has released an advisory for mySCADA myPRO Manager, identifying two vulnerabilities that could allow attackers to access privileged functions or send SMS messages.
This advisory warns about two security problems in a software tool called mySCADA myPRO Manager. If someone doesn't have the right password, they could use the tool to do things they shouldn't, like change important settings or send messages.
Analysis
{"#CVE-2026-73807":["
Privileged Function Access\n","The mySCADA myPRO Manager command API does not properly enforce authentication for privileged functions, allowing an unauthenticated attacker with network access to exploit this vulnerability and access privileged management functions.","
CVE-2026-82567\n","The myPRO Manager notification gateway exposes an unauthenticated HTTP endpoint for sending SMS messages through a connected GSM modem. An unauthenticated attacker with network access can exploit this vulnerability to send arbitrary SMS messages."],"#mySCADA myPRO Manager":["
Vulnerability Details\n","mySCADA Technologies has addressed these issues in Version 2.2 and recommends users update to the latest version. Users are notified of new versions if the device is connected to the internet, or can download the latest version from the official website.","
Remediation\n","Users should update to the latest version of mySCADA myPRO Manager to mitigate these vulnerabilities."]}
Key points
- mySCADA myPRO Manager is affected by two vulnerabilities
- Users should update to the latest version of the software
- The vulnerabilities allow attackers to access privileged functions or send SMS messages
- mySCADA Technologies has released a new version to fix the vulnerabilities
Users can protect their systems by updating to the latest version of mySCADA myPRO Manager.
If users don't update, their systems could be at risk of being hacked.



