Back to Database
Status published
Medium
CVE-2024-21794
Open Redirect in Rapid SCADA
Vulnerability Description
In Rapid Software LLC's Rapid SCADA versions prior to Version 5.8.4, an attacker can redirect users to malicious pages through the login page.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-21794
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Noam Moshe of Claroty Research reported these vulnerabilities to CISA.
References
More from Rapid Software LLC
View All →CVE-2024-22096
Relative Path Traversal in Rapid SCADA
Medium
6.5
CVE-2024-22016
Incorrect Permission Assignment for Critical Resource in Rapid SCADA
High
7.8
CVE-2024-21869
Plaintext Storage of a Password in Rapid SCADA
Medium
6.2
CVE-2024-21866
Generation of Error Message Containing Sensitive Information in Rapid SCADA
Medium
5.3
CVE-2024-21852
Rapid SCADA Path Traversal
High
8.8
Affected Vendor
Rapid Software LLC
View all reports →Affected Software
Rapid SCADA
Vulnerable Versions:
0
Timeline
Official Publish:
February 1st, 2024
Last Modified:
June 16th, 2025
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:N/I:L/A:L