Thursday, August 26, 2021

Review - 4 Advisories Published – 8-26-21

Today CISA’s NCCIC-ICS published four control system security advisories for products from Delta Electronics (2), Annke, and Johnson Controls.

Delta Advisory #1 – This advisory describes a stack-based buffer overflow vulnerability in the Delta DOPSoft product.

Delta Advisory #2 - This advisory describes eight vulnerabilities in the Delta DIAEnergie product.

Annke Advisory - This advisory describes a stack-based buffer overflow vulnerability in the Annke N48PBB network video recorder.

Johnson Controls - This advisory describes an improper authorization vulnerability in the Johnson Controls CEM Systems AC2000 product.

 

For additional information on these advisories, including links to vendor advisory and researcher reports, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/4-advisories-published-8-26-21 - subscription required.

No comments:

 
/* Use this with templates/template-twocol.html */