Tuesday, October 29, 2024

Review – 3 Advisories Published – 10-29-24

Today, CISA’s NCCIC-ICS published three control system security advisories for products from Delta Electronics, Solar-Log, and Siemens.

Advisories

Delta Advisory - This advisory describes a deserialization of untrusted data vulnerability in the Delta InfraSuite Device Master real-time device monitoring software.

Solar-Log Advisory - This advisory describes a cross-site scripting vulnerability in the Solar-Log Base 15 solar monitoring device.

Siemens Advisory - This advisory discusses four vulnerabilities in the Siemens InterMesh products.

 

For more information on these advisories, including a down-the-rabbit-hole look at the affected Solar-Log products, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/3-advisories-published-10-29-24 - subscription required.

No comments:

 
/* Use this with templates/template-twocol.html */