A vulnerability was found in ScadaBR 1.2.0. It has been declared as problematic. This affects an unknown function of the component URL Handler. Executing a manipulation can lead to basic cross site scripting.
This vulnerability is handled as CVE-2026-9646. The attack can be executed remotely. There is not any exploit available.