What is CVE-2026-47719?
This vulnerability in FUXA SCADA/HMI software allows remote unauthorized commands by bypassing authorization in Socket.IO handlers. Attackers can manipulate property.address or endpoint connection data, impacting versions prior to 1.3.2. Immediate update to version 1.3.2 is required to mitigate the issue.
Azərbaycanca: FUXA SCADA/HMI proqramında aşkar edilmiş bu boşluq uzaqdan icazəsiz əmrlərin göndərilməsinə imkan verir. 'Socket.IO handler'lərində avtorizasiya yoxlaması olmadığı üçün təcavüzkar 'property.address' və ya 'endpoint' bağlantı məlumatlarını manipulyasiya edə bilər. Təsirə məruz qalmamaq üçün dərhal 1.3.2 versiyasına yenilənməlidir.
Related CVEs
link basis: same weakness class CWE-862
FAQ2
What can an attacker manipulate by exploiting CVE-2026-47719 in FUXA SCADA/HMI software?
An attacker can manipulate 'property.address' or 'endpoint' connection data.
Which version should be updated to in order to mitigate CVE-2026-47719?
You should immediately update to version 1.3.2 to mitigate the vulnerability.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.