Tuesday, July 11, 2023

Review – 3 Advisories and 1 Update Published – 7-11-23

Today, CISA’s NCCIC-ICS published three control system security advisories for products from Panasonic, Sensormatic, and Rockwell Automation. They also published an update for an advisory from Mitsubishi Electric.

Articles

Panasonic Advisory - This advisory describes three vulnerabilities in the Panasonic Control FPWIN Pro7.

Johnson Controls Advisory - This advisory describes an improper access control vulnerability in the Johnson Controls ​iSTAR Ultra products.

Rockwell Advisory - This advisory describes a cross-site request forgery vulnerability in the Rockwell Enhanced HIM API.

Updates

Mitsubishi Update - This update provides additional information on an advisory that was originally published on June 29th, 2023.

 

For more details about these advisories, including links to researcher reports, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/3-advisories-and-1-update-published-ed2 - subscription required.

No comments:

 
/* Use this with templates/template-twocol.html */