Tuesday, August 15, 2023

Review – 2 Advisories Published – 8-15-23

Today, CISA’s NCCIC-ICS published two control system security advisories for products from Rockwell Automation and Schneider Electric.

Advisories

Rockwell Advisory - This advisory describes an incorrect calculation vulnerability in the Rockwell Armor PowerFlex.

Schneider Advisory - This advisory describes an authentication bypass by capture replay vulnerability in various Schneider products.

 

For more details about these advisories, including a down-the-rabbit-hole look at the reported fixed version for the Schneider advisory, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/2-advisories-published-8-15-23 - subscription required.

No comments:

 
/* Use this with templates/template-twocol.html */