Tuesday, January 14, 2025

Review – 4 Advisories Published – 1-14-25

Today CISA’s NCCIC-ICS published four control system security advisories for products from Belledonne Communications, Schneider Electric (2), and Hitachi Energy.

Advisories

Belledonne Advisory - This advisory describes a NULL pointer dereference vulnerability in the Belledonne Linphone-Desktop VoIP software.

Schneider Advisory #1 - This advisory describes a cross-site scripting vulnerability in the Schneider EcoStructure Power products.

Schneider Advisory #2 - This advisory describes an improper privilege management vulnerability in the Schneider Vijeo Designer.

Hitachi Energy Advisory - This advisory describes eight vulnerabilities in the Hitachi Energy FOXMAN-UN product.

 

For more information on these vulnerabilities see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/4-advisories-published-1-14-25 - subscription required.

No comments:

 
/* Use this with templates/template-twocol.html */