Today, CISA’s NCCIC-ICS published two control system security advisories for products from Enphase.
Advisories
Enphase Installer
Advisory - This advisory describes
a use of hard-coded credentials vulnerability in the Enphase Installer Toolkit.
Enphase Envoy
Advisory - This advisory
describes a command injection vulnerability in the Enphase Envoy energy
monitoring device.
For more details on these advisories see my article at CFSN
Detailed Analysis - https://patrickcoyle.substack.com/p/2-advisories-published-6-20-23
- subscription required.
No comments:
Post a Comment