Tuesday, April 18, 2023

Review – 2 Advisories and 2 Updates Published – 4-18-23

Today, CISA’s NCCIC-ICS published two control system security advisories for products from Schneider and Omron. They also updated two advisories for products from Mitsubishi and Omron.

Advisories

Schneider Advisory - This advisory describes three vulnerabilities in the Schneider Easy UPS Online Monitoring Software.

Omron Advisory - This advisory describes a missing authentication for critical function vulnerability in the Omron SYSMAC CS/CJ Series programmable logic controllers.

Updates

Mitsubishi Update - This update provides additional information on an advisory that was originally published on January 17th, 2023 and most recently updated on January 26th, 2023.

Omron Update - This update provides additional information on an advisory that was originally published on November 30th, 2021 and most recently updated on November 29th, 2022.

 

For more details on these advisories, including links to researcher reports and a brief description of the changes made in the update, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/2-advisories-and-2-updates-published-c83 - subscription required.

No comments:

 
/* Use this with templates/template-twocol.html */