Showing posts with label Cisco. Show all posts
Showing posts with label Cisco. Show all posts

Saturday, May 9, 2026

Review – Public ICS Disclosures – Week of 5-2-26 – Part 1

This has been a somewhat busy disclosure week. For Part 1, we have nine vendor disclosures from ABB, Arista (2), Cisco, ifm, Johnson Controls, Palo Alto Networks, Philips, and QNAP. 

Advisories  

ABB Advisory - ABB published an advisory that explains that their System 800xA product comes bundled with Microsoft Edge, but that ABB has not updated the software to include Edge updates. 

Arista Advisory #1 - Arista published an advisory that discusses the Dirty Frag vulnerabilities. 

Arista Advisory #2 - Arista published an advisory that describes an incomplete comparison with missing factors vulnerability in their Arista EOS. 

Cisco Advisory - Cisco published an advisory that describes three vulnerabilities in their IoT Field Network Director. 

Ifm Advisory - CERT-VDE published an advisory that discusses three vulnerabilities in the ifm CR3171 ethernet LTE/GNSS radio modem. 

Johnson Controls Advisory - Johnson Controls published an advisory that discusses an improper access control vulnerability in their Airwall 75 gateway. 

Palo Alto Networks Advisory - PAN published an advisory that describes an out-of-bounds write vulnerability (that is listed in the CISA Known Exploited Vulnerabilities catalog) in their PAN-OS product. 

Philips Advisory - Philips published an advisory that discusses the CopyFail vulnerability. 

QNAP Advisory - QNAP published an advisory that discusses the CopyFail vulnerability. QNAP provides lists of affected and unaffected products. 


For more information on these disclosures, including links to 3rd party advisories, researcher reports, and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-5-c51 - subscription required. 

Saturday, February 7, 2026

Review – Public ICS Disclosures – Week of 1-31-26 – Part 1

This week we have a moderately busy disclosure week. For Part 1 there nine are vendor disclosures from Cisco, Delta Electronics, Eaton, ELECOM (2), HP, Moxa (2), and Pilz.

Advisories

Cisco Advisory - Cisco published an advisory that describes a use of hard-coded credentials vulnerability in their Prime Infrastructure product.

Delta Advisory - Delta published an advisory that describes a stack-based buffer overflow vulnerability in their ASDA-Soft product.

Eaton Advisory - Eaton published an advisory that describes two improper certificate validation vulnerabilities in their Network Cards products.

ELECOM Advisory #1 - JPCERT published an advisory that describes five vulnerabilities in multiple ELECOM wireless LAN routers.

ELECOM Advisory #2 - JPCERT published an advisory that describes four vulnerabilities in multiple ELECOM wireless LAN products.

HP Advisory - HP published an advisory that discusses 287 vulnerabilities in their ThinPro products.

Moxa Advisory #1 - Moxa published an advisory that describes two vulnerabilities in the industrial computers.

Moxa Advisory #2 - Moxa published an advisory that describes a reliance on security through obscurity vulnerability in their Ethernet Switches.

Pilz Advisory - CERT-VDE published an advisory that discusses four vulnerabilities in the Pilz PIT User Authentication Service.

 

For more information on these disclosures, including links to 3rd party advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-1-844 - subscription required.

Saturday, December 13, 2025

Review – Public ICS Disclosures – Week of 12-6-25 – Part 1

This week we have bulk disclosures from FortiGuard (8), There are also 12 additional vendor disclosures from Cisco, Dell, Dassault Systems, Elecom, Endress+Hauser, Hitachi Energy (2), HP, HPE, Moxa, and NI (2).

Bulk Disclosures – FortiGuard

Insertion of sensitive information into REST API logs,

Insufficient Session Expiration in SSLVPN,

Multiple Fortinet Products' FortiCloud SSO Login Authentication Bypass,

Multiple authenticated OS Command Injections via API,

OS command injection in GUI backup options,

OS command injection in multiple endpoints,

Private key readable by admin, and

Reflected XSS in HA cluster.

Advisories

Cisco Advisory - Cisco published an advisory that discusses the React Server Components deserialization of untrusted data vulnerability that is listed in CISA’s Known Exploited Vulnerabilities catalog.

Dell Advisory - Dell published an advisory that discusses 30 vulnerabilities. All but three of these are third-party vulnerabilities.

Dassault Advisory - Dassault published an advisory that describes a cross-site scripting vulnerability in their ENOVIA Collaborative Industry Innovator.

Elecom Advisory - JP CERT published an advisory that describes an unquoted search path vulnerability in the Elecom Clone for Windows.

Endress+Hauser Advisory - CERT-VDE published an advisory that discusses an out-of-bounds write vulnerability in multiple Endress+Hauser products.

Hitachi Energy Advisory #1 - Hitachi Energy published an advisory that discusses a deserialization of untrusted data vulnerability in their Asset Suite product.

Hitachi Energy Advisory #2 - Hitachi Energy published an advisory that discusses the React Server Component deserialization of untrusted data vulnerability that is listed in CISA’s KEV catalog.

HP Advisory - HP published an advisory that describes a path traversal vulnerability in their  Event Utility and Omen Gaming Hub products.

HPE Advisory - HPE published an advisory that discusses ten vulnerabilities in their ProLiant DL/ML/XD Alletra and Synergy Servers.

Moxa Advisory - Moxa published an advisory that describes two vulnerabilities in their MXsecurity Series products.

NI Advisory #1 - NI published an advisory that describes nine vulnerabilities in their LabVIEW product.

NI Advisory #2 - NI published an advisory that describes a relative path traversal vulnerability in their System Web Server.

 

For more information on these disclosures, including links to 3rd party advisories, researcher reports, and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-12-c5d - subscription required.

Saturday, October 4, 2025

Review – Public ICS Disclosures – Week of 9-27-25 - Part 1

This week we have a moderately busy disclosure week. We have a bulk disclosure from Splunk (7) vendor disclosures from ABB. We also have eight vendor disclosures from ABB, Cisco, Hitachi (3), Hitachi Energy (2), and HP.

Bulk Disclosure – Splunk

Third Party Packages in Splunk Enterprise SVD-2025-1007,

Splunk Enterprise server-side request forgery SVD-2025-1006,

Splunk Enterprise multiple LDAP bind requests SVD-2025-1005,

Splunk Enterprise XML external entity (XXE) injection SVD-2025-1004,

Splunk Enterprise execution of unauthorized JavaScript code SVD-2025-1003,

Splunk Enterprise execution of unauthorized JavaScript code SVD-2025-1002, and

Splunk Enterprise exposing sensitive search results SVD-2025-1001

 Advisories

ABB Advisory - ABB published an advisory that describes a heap-based buffer overflow vulnerability in their Terra AC wallbox (JP) product.

Cisco Advisory - Cisco published an advisory that discusses two cross-site scripting vulnerabilities in their Cyber Vision Center product.

Hitachi Advisory #1 - Hitachi published an advisory that discusses 13 vulnerabilities (one with publicly available exploits) in their Ops Center Common Services product.

Hitachi Advisory #2 - Hitachi published an advisory that discusses 18 vulnerabilities (three with publicly available exploits) in multiple Hitachi products.

Hitachi Advisory #3 - Hitachi published an advisory that discusses two vulnerabilities in multiple Hitachi products.

Hitachi Energy Advisory #1 - Hitachi Energy published an advisory that describes an improper output neutralization for logs vulnerability in their Asset Suite product.

Hitachi Energy Advisory #2 - Hitachi Energy published an advisory that describes three vulnerabilities in their MACH GWS product.

HP Advisory #1 - HP published an advisory that discusses nine vulnerabilities in multiple HP thin client PCs.

HP Advisory #2 - HP published an advisory that describes an improper input validation vulnerability in their Support Assistant product.

 

For more information on these disclosures, including links to 3rd party advisories, researcher reports, and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-9-4bc - subscription required.

Saturday, August 30, 2025

Review – Public ICS Disclosures – Week of 8-23-25 – Part 1

This week is a moderately busy disclosure week. We have bulk vendor disclosures from QNAP (11). We have 8 additional vendor disclosures from Cisco, Delta Electronics, Hitachi, Hitachi Energy (2), HPE (2), and Moxa.

Bulk Vendor Disclosures

QNAP (11)

Advisories

Cisco Advisory - Cisco published an advisory that describes an open redirect vulnerability in their Virtual Keyboard Video Monitor.

Delta Advisory - Delta published an advisory that describes an improper restriction of XML external entity reference vulnerability in their EIP Builder.

Hitachi Advisory – Hitachi published an advisory that discusses five vulnerabilities in multiple Hitachi products.

Hitachi Energy Advisory #1 - Hitachi published an advisory that discusses a JAVA deserialization vulnerability (with publicly available exploit and is listed in CISA’s KEV catalog) in their Service Suite Product.

Hitachi Energy Advisory #2 - Hitachi published an advisory that discusses six vulnerabilities (two with publicly available exploits) in their Asset Suite product.

HPE Advisory #1 - HPE published an advisory that discusses two vulnerabilities (one with publicly available exploit) in their HP-UX PAM RADIUS product.

HPE Advisory #2 - HPE published an advisory that discusses three vulnerabilities in their Compute Scale-up Server 3200 Platform Servers.

Moxa Advisory - Moxa published an advisory that describes an unquoted search path vulnerability in the Moxa Industrial Computers.

For more information on these disclosures, including links to 3rd party advisories, researcher reports, and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-8-57d - subscription required.

Monday, March 10, 2025

Review – Public ICS Disclosures – Week of 3-1-25 – Part 2

For Part 2 we have four additional vendor disclosures from Dell, WAGO, and Weidmueller (2). There are also two updates from Cisco and FortiGuard. We have seven researcher reports for vulnerabilities in products from ABB, Delta Electronics (3), and HP (3). Finally, we have four exploits for products from Advantech (2), ControlID, and HP.

Advisories

Dell Advisory - Dell published an advisory that discusses 64 vulnerabilities in their ThinOS product line.

WAGO Advisory - CERT-VDE published an advisory that describes an unchecked return value vulnerability in multiple WAGO products.

Weidmueller Advisory #1 - CERT-VDE published an advisory that discusses a Sweet32 vulnerability in multiple Weidmueller ethernet switches.

Weidmueller Advisory #2 - CERT-VDE published an advisory that describes a use of hard-coded credentials vulnerability in Weidmueller PROCON-WIN product.

Updates

Cisco Update - Cisco published an update for their small business routers advisory that was originally published on January 11th, 2023, and most recently updated on March 14th, 2023.

FortiGuard Update - FortiGuard published an update for their RADIUS Protocol advisory that was originally published on August 13th, 2024, and most recently updated on January 14th, 2025.

Researcher Reports

ABB Report - Zero Science published a report that describes a security bypass vulnerability (with publicly available exploit) in the ABB Cylon Aspect building energy management program.

Delta Researcher Reports - ZDI published three reports about vulnerabilities in the Delta ISPSoft product.

HP Researcher Reports - ZDI published three reports about vulnerabilities in the HP LaserJet Pro MFP 3301fdw.

Exploits

Advantech Exploit #1 - Indoushka published an exploit for an SQL injection vulnerability in the Advantech WebAccess product.

Advantech Exploit #2 - Indoushka published an exploit for an improper input validation vulnerability in the Advantech DIAEnergie product.

ControlID Exploit - Indoushka published an exploit for an improper authentication vulnerability in the ControlID iDSecure product.

HP Exploit - Indoushka published an exploit for a shell upload vulnerability in the HP Intelligent Management Center.

 

For more information on these disclosures, including links to 3rd party advisories, researcher reports, and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-3-a8f - subscription required.

Sunday, December 15, 2024

Review – Public ICS Disclosures – Week of 12-7-24 – Part 2

For Part 2 this week we have 21vvendor updates from Cisco, CODESYS, Palo Alto Networks, and Siemens (18). There are 12 researcher reports about vulnerabilities in products from ABB (9), GeoVision, Phoenix Contact, and Ruijie. Finally, we have an exploit for products from Linear.

Updates

Cisco Update - Cisco published an update for their NX-OS Software Image Verification Bypass advisory that was originally published on December 4th, 2024.

CODESYS Update - CODESYS published an update for their Control Win advisory that was originally published on May 22nd, 2024, and most recently updated on June 5th, 2024.

Palo Alto Networks Update - Palo Alto Networks published an update for their GlobalProtect App advisory that was originally published on November 25th, 2024, and most recently updated on December 6th, 2024.

Siemens Update #1 - Siemens published an update for their Intel-CPUs advisory that was originally published on September 12th, 2023, and  most recently updated on August 13th, 2024.

Siemens Update #2 - Siemens published an update for their Industrial Products advisory that was originally published on May 14th, 2024, and most recently updated on November 12th, 2024.

Siemens Update #3 - Siemens published an update for their SIMATIC S7-1500 advisory that was originally published on October 8th, 2024, and most recently updated on November 12th, 2024.

Siemens Update #4 - Siemens published an update for their Palo Alto Networks Virtual NGFW advisory that was originally published on April 9th, 2024, and most recently updated on August 13th, 2024.

Siemens Update #5 - Siemens published an update for their Socket.IO advisory that was originally published on September 10th, 2024, and most recently updated on November 12th, 2024.

Siemens Update #6 - Siemens published an update for their RADIUS Protocol advisory that was originally published on July 9th, 2024, and most recently updated on November 12th, 2024.

Siemens Update #7 - Siemens published an update for their OPC UA Implementation advisory that was originally published on September 12th, 2023, and most recently updated on October 8th, 2024.

Siemens Update #8 - Siemens published an update for their Fortigate NGFW advisory that was originally published on July 9th, 2024, and most recently updated on October 8th, 2024.

Siemens Update #9 - Siemens published an update for their SICAM and SITIPE Products advisory that was originally published on September 10th, 2024.

Siemens Update #10 - Siemens published an update for their Profinet Devices advisory that was originally published on July 13th, 2021, and most recently updated on November 12th, 2024.

Siemens Update #11 - Siemens published an update for their Tecnomatix Plant Simulation advisory that was originally published on October 8th, 2024. - Siemens published an update for their Tecnomatix Plant Simulation advisory that was originally published on October 8th, 2024.

Siemens Update #12 - Siemens published an update for their Palo Alto Networks Virtual NGFW advisory that was originally published on April 9th, 2024, and most recently updated on October 8th, 2024.

Siemens Update #13 - Siemens published an update for their GNU/Linux subsystem advisory that was originally published on December 12th, 2023, and most recently updated on November 12th, 2024.

Siemens Update #14 - Siemens published an update for their Palo Alto Networks Virtual NGFW advisory that was originally published on July 9th, 2024, and most recently updated on November 12th, 2024.

Siemens Update #15 - Siemens published an update for their n SENTRON Powercenter advisory that was originally published on October 8th, 2024.

Siemens Update #16 - Siemens published an update for their OpenSSL X.400 advisory that was originally published on August 8th, 2024, and most recently updated on November 12th, 2024.

Siemens Update #17 - Siemens published an update for their Timing Based Side Channel advisory that was originally published on August 8th, 2023, and most recently updated on December 12th, 2023.

Siemens Update #18 - Siemens published an update for their Protection Mechanism Failure advisory that was originally published on June 13th, 2023, and most recently updated on December 12th, 2023.

Researcher Reports

ABB Reports - Zero Science published nine reports describing vulnerabilities in the ABB Cylon Aspect building energy management product.

GeoVision Report - The Zero Day Initiative published a report that describes a missing authorization vulnerability in the GeoVision GV-ASManager product.

Phoenix Contact Report - Nozomi Networks published a report that describes 12 vulnerabilities in the Phoenix Contact mGuard industrial router.

Ruijie Report - Claroty published a report that describes 10 vulnerabilities in the Ruijie Cloud-Connected Devices.

Exploits

Linear Exploit - Ik-mayne published an exploit for an OS command injection vulnerability in the Linear eMerge e3-Series product.

 

For more information on these updates, reports and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-12-3d4 - subscription required. 

Saturday, December 7, 2024

Review – Public ICS Disclosures – Week of Week of 11-30-24

This week we have fourteen vendor disclosures from Broadcom, Cisco, Dell, Festo, Hitachi, HPE, Moxa, Philips, QNAP (3), Rockwell, WAGO, and Zyxel. There are seven vendor updates from Broadcom, FortiGuard (4), Moxa, and Palo Alto Networks. We also have five researcher reports for products from ABB (4) and WAGO. Finally, we have four exploits for FortiGuard, Intelligent Security Systems, Siemens, and VMware.

Advisories

Broadcom Advisory - Broadcom published an advisory that discusses nine vulnerabilities in their Brocade SANnav product.

Cisco Advisory - Cisco published an advisory that describes an improper access control vulnerability in their NX-OS product.

Dell Advisory - Dell published an advisory that discusses 18 vulnerabilities in their Dell ThinOS.

Festo Advisory - CERT-VDE published an advisory that discusses three vulnerabilities in the Festo provided CODESYS Gateway Server.

Hitachi Advisory - Hitachi published an advisory that describes a use of default credentials vulnerability in their Ops Center OVA product.

HPE Advisory - HPE published an advisory that describes four vulnerabilities in their Aruba Networking ClearPass Policy Manager.

Moxa Advisory - Moxa published an advisory that describes an improper validation of specified type of input vulnerability in their VPort 07-3 Series IP cameras.

Philips Advisory - Philips published an advisory that discusses an improper handling of file names that identify virtual resources vulnerability in the Sailpoint IdentityIQ Identity and Access Management software.

QNAP Advisory #1 - QNAP published an advisory that describes a link following vulnerability in their Qsync Central product. The vulnerability was reported by c411e.

QNAP Advisory #2 - QNAP published an advisory that describes eight vulnerabilities in their QTS and QuTS hero products.

QNAP Advisory #3 - QNAP published an advisory that describes an OS command injection vulnerability in their License Center product.

Rockwell Advisory - Rockwell published an advisory that describes four vulnerabilities in their Arena product. The vulnerabilities were reported by the Zero Day Initiative.

WAGO Advisory - CERT-VDE published an advisory that discusses an improper check for unusual or exceptional conditions vulnerability in the WAGO Basic Controller products.

Zyxel Advisory - Zyxel published an advisory that describes three vulnerabilities in multiple Zyxel communications products.

Updates

Broadcom Update - Broadcom published an update for their Azul Zulu advisory that was originally published on July 26th, 2024, and most recently updated on July 29th, 2024.

FortiGuard Update #1 - FortiGuard published an update for their HTTP/2 CONTINUATION Frames advisory that was originally published on May 14th, 2024, and most recently updated on November 21st, 2024.

FortiGuard Update #2 - FortiGuard published an update for their regreSSHion advisory that was originally published on July 9th, 2024, and most recently updated on November 22nd, 2024.

FortiGuard Update #3 - FortiGuard published an update for their FortiOS advisory that was originally published on April 9th, 2024, and most recently updated on May 15th, 2024.

FortiGuard Update #4 - FortiGuard published an update for their Stack buffer overflow on Bluetooth advisory that was originally published on June 11th, 2024.

Moxa Update - Moxa published an update for their Weak SSL/TLS Key Exchange advisory that was originally published on November 4th, 2024, and most recently updated on November 22nd, 2024.

Palo Alto Networks Update - Palo Alto Networks published an update for their GlobalProtect App advisory that was originally published on November 25th, 2024.

Researcher Reports

ABB Reports - Zero Science published four reports about individual vulnerabilities in the ABB Cylon Aspect.

WAGO Report - Nozomi Networks published a report that describes eight vulnerabilities in the WAGO PLC device model 750-8216/025-001.

Exploits

FortiGuard Exploit - sfewer-r7 published a Metasploit module for a missing authentication for critical function vulnerability (listed in CISA’s Known Exploited Vulnerability catalog) in the FortiGuard FortiManager products.

Intelligent Security Systems Exploit - Milad Karimi published an exploit for an unquoted service path vulnerability in the Intelligent Security Systems SecureOS.

Siemens Exploit - Stefan Viehböck, and Constantin Schieber-Knöbl of SEC Consult published an exploit for an improper NULL termination vulnerability in the Siemens JTAG Interface.

VMware Exploit - Matei Mal Badanoiu published a Metasploit module for a ASP.NET misconfiguration: use of identity impersonation vulnerability in the VMware vCenter Server.

 

For more information on these disclosures, including links to 3rd party advisories and researcher reports, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-week - subscription required. 

Saturday, November 9, 2024

Review – Public ICS Disclosures – Week of 11-2-24

This week we have 13 vendor disclosures from Cisco, Hitachi (2), HPE (3), Moxa, Palo Alto Networks (2), QNAP, SEL, Sick, and WatchGuard. We have a vendor update from FortiGuard. Finally, we have 11 researcher reports for vulnerabilities in products from ABB and Delta Electronics (10).

Advisories

Cisco Advisory - Cisco published an advisory that describes a command injection vulnerability in their Unified Industrial Wireless Software.

Hitachi Advisory #1 - Hitachi published an advisory that discusses four vulnerabilities in multiple Hitachi products.

Hitachi Advisory #2 - Hitachi published an advisory that discusses four vulnerabilities in their Cosminexus Developer's Kit for Java and Hitachi Developer's Kit products.

HPE Advisory #1 - HPE published an advisory that discusses the regreSSHion vulnerability. HPE provides a list of Cray products affected by the vulnerability.

HPE Advisory #2 - HPE published an advisory that discusses seven vulnerabilities (one with publicly available exploit) in their Unified OSS Console Assurance Monitoring (UOCAM) Software.

HPE Advisory #3 - HPE published an advisory that describes six vulnerabilities in their Aruba Networking Access Points.

Moxa Advisory - Moxa published an advisory that describes three vulnerabilities in their EDS-P510 Series products.

Palo Alto Networks Advisory #1 - Palo Alto Networks published an advisory that discusses 77 vulnerabilities in their Cortex XDR agent product.

Palo Alto Networks Advisory #2 - Palo Alto Networks published an advisory that discusses a claim of a remote code execution vulnerability via the PAN-OS management interface.

QNAP Advisory - QNAP published an advisory that describes an unidentified vulnerability in their QuRouter.

SEL Advisory - SEL published a new version notice for their Blueframe OS that reports that the latest version resolves two cybersecurity issues.

Sick Advisory - Sick published an advisory that discusses 10 vulnerabilities in their CDE-100 product. These are third-party vulnerabilities.

WatchGuard Advisory - WatchGuard published an advisory that describes an improper privilege management vulnerability in their Endpoint Protection product family.

Updates

FortiGuard Update - FortiGuard published an update for their FortiManager fgfmd daemon advisory that was originally published on October 23rd, 2024, and most recently updated on November 5th, 2024.

Researcher Reports

ABB Report - Zero Science published a report of an off-by-one error vulnerability (with publicly available exploit) in the ABB Cylon Aspect building energy management product.

Delta Reports - Zero Day Initiative published 10 reports describing vulnerabilities in the Delta DIAScreen, a component of the DIAStudio Smart Machine Suite.

 

For more information on these disclosures, including links to 3rd party advisories, researcher reports and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-11-062 - subscription required.

Saturday, October 5, 2024

Review – Public ICS Disclosures – Week of 9-28-24

This week we have 13 vendor disclosures from Bosch (2), Cisco, DrayTek (2), Hitachi, HP, JTEKT, QNAP, SEL (2), Splunk, Westermo, and WithSecure. We have two vendor updates from Dell. Finally, we have two exploits for products from ABB and Blackberry.

Advisories

Bosch Advisory #1 - Bosch published an advisory that describes a sensitive information disclosure vulnerability in their Configuration Manager.

Bosch Advisory #2 - Bosch published an advisory that discusses three vulnerabilities in their PRC7000 product.

Cisco Advisory - Cisco published an advisory that describes two vulnerabilities in their Small Business Dual WAN Gigabit VPN Routers.

DrayTek Advisory #1 - DrayTek published an advisory that describes 14 vulnerabilities (with exploits available) in multiple Vigor routers.

DrayTek Advisory #2 - DrayTek published an advisory that describes seven classic buffer overflow vulnerabilities in multiple Vigor routers.

Hitachi Advisory - Hitachi published an advisory that discusses an improper input validation vulnerability in their Cosminexus Component Container.

HP Advisory - HP published an advisory that describes an escalation of privilege vulnerability in their business notebook PCs.

QNAP Advisory - QNAP published an advisory that discusses the CUPS vulnerabilities.

SEL Advisory #1 - SEL published a new version notice for their SEL-5030 acSELerator QuickSet Software that includes a description of a cybersecurity enhancement.

SEL Advisory #2 - SEL published a new version notice for their SEL-5813 Backup and Recovery Tool (BaRT) that includes a description of a cybersecurity enhancement.

Splunk Advisory - Splunk published an advisory that discusses four vulnerabilities in their Add-on for Amazon Web Services.

Westermo Advisory - Westermo published an advisory that describes a session hijacking vulnerability in their IbexOS Web Interface.

WithSecure Advisory - WithSecure published an advisory that describes a denial-of-service vulnerability in their Atlant Product.

Updates

Dell Update #1 - Dell published an update for their ThinOS advisory that was originally published on September 9th, 2024, and most recently updated on September 18th, 2024. The

Dell Update #2 - Dell published an update for their ThinOS advisory that was originally published on June 12th, 2024, and most recently updated on September 9th, 2024.

Exploits

ABB Exploit - LiquidWorm published an exploit for a file disclosure vulnerability in the ABB Cylon Aspect.

Blackberry Exploit - SEC Consult published an exploit for an uninstall password bypass vulnerability in the Blackberry CylanceOPTICS product.

 

For more information on these disclosures, including links to 3rd party advisories, researcher reports, and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-9-d4d - subscription required.

 
/* Use this with templates/template-twocol.html */