Tuesday, September 2, 2025

Review – 3 Advisories and Update Published – 9-2-25

Today CISA’s NCCIC-ICS published three control system security advisories for products from SunPower, Fuji Electric, Delta Electronics. They also updated an advisory for products from Hitachi Energy.

Advisories

SunPower Advisory - This advisory describes a use of hard-coded credentials vulnerability in the SunPower PVS6's BluetoothLE interface.

Fuji Advisory - This advisory describes a deserialization of untrusted data vulnerability in the Fuji FRENIC-Loader 4.

Delta Advisory - This advisory describes an improper restriction of XML external entity reference vulnerability in the Delta EIP Builder.

Updates

Hitachi Energy Update - This update provides additional information on the Relion 670/650 advisory that was originally published on July 1st, 2025.

 

For more information on these advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/3-advisories-and-update-published - subscription required.

No comments:

 
/* Use this with templates/template-twocol.html */