Showing posts with label GE Vernova. Show all posts
Showing posts with label GE Vernova. Show all posts

Saturday, May 30, 2026

Review – Public ICS Disclosures – Week of 5-23-26 – Part 1

This has been a busy disclosure week. For Part 1, there are 15 vendor disclosures from B&R, CODESYS (3), Dassault Systems (3), D-Link, GE Vernova, Helmholz (2), and Hitachi (4). 

Advisories  

B&R Advisory - B&R published an advisory that describes an allocation of resources without limit or throttling vulnerability in their PPT30 OPC-UA Server. 

CODESYS Advisory #1 - CODESYS published an advisory that describes two incorrect default permissions vulnerabilities in their Development System product. 

CODESYS Advisory #2 - CODESYS published an advisory that describes an incorrect authorization vulnerability in their Control runtime system. 

CODESYS Advisory #3 - CODESYS published an advisory that describes an improper validation of specified quantity in input vulnerability in their Control Runtime system. 

Dassault Advisory #1 - Dassault published an advisory that describes a path traversal vulnerability in their DELMIA Factory Resource Manager. 

Dassault Advisory #2 - Dassault published an advisory that describes a stored cross-site scripting vulnerability in their ELMIA Factory Resource Manager. 

Dassault Advisory #3 - Dassault published an advisory that describes a stored cross-site scripting vulnerability in their ENOVIA Collaborative Industry Innovator. 

D-Link Advisory - D-Link published an advisory that describes an exposure of sensitive system information to an unauthorized control sphere vulnerability (with publicly available exploit) in their DIR-601 WiFi Routers. 

GE Vernova Advisory - GE published an advisory that discusses an incorrect authorization vulnerability in their Threat Intelligence module. 

Helmholz Advisory #1 - CERT-VDE published an advisory that discusses two command injection vulnerabilities in their REX100, REX200, and REX250 products. 

Helmholz Advisory #2 - CERT-VDE published an advisory that discusses 41 SQL injection vulnerabilities in their myREX24V2 and myREX24V2.virtual products. 

Hitachi Advisory #1 - Hitachi published an advisory that discusses 108 vulnerabilities in their Disk Array systems. 

Hitachi Advisory #2 - Hitachi published an advisory that discusses eight vulnerabilities in multiple Hitachi products. These are third-party vulnerabilities. 

Hitachi Advisory #3 - Hitachi published an advisory that discusses eight vulnerabilities in their Developer's Kit for Java and Cosminexus Developer’s kit for Java. 

Hitachi Advisory #4 - Hitachi published an advisory that describes a missing password filed masking vulnerability in their Infrastructure Analytics Advisor, Ops Center Analyzer, and Ops Center Analyzer viewpoint products. 


For more information on these disclosures, including links to 3rd party advisories, researcher reports, and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-5-df7 - subscription required. 

Saturday, March 14, 2026

Review – Public ICS Disclosures – Week of 3-7-26 – Part 1

This is a busy cyber disclosure week. For Part 1 we have bulk vendor disclosures from FortiGuard (11), and Splunk (13). There are 15 additional vendor disclosures from ABB (2), CODESYS, Eaton, GE Vernova, Hitachi, HMS (2), HP (3), and HPE (4).

Advisories

Bulk Vendor Disclosures – FortiGuard

Authentication Lockout Bypass via Race Condition,

Buffer Overflow in LLDP OUI field,  

Buffer overflow via fgtupdates service,  

Format string vulnerability in fazsvcd,

Lack of TLS Certificate Validation during initial SSO Authentication,

MFA Bypass in GUI,

OS command injection on vmimages update feature,

Privilege escalation using undocumented CLI command,

SQL injection in jsonrpc api,

XSS in LDAP server option, and

Shell command limitation bypass by SSH local config overriding.

Bulk Vendor Disclosures – Splunk

Third-Party Package Updates in Splunk AppDynamics Analytics Agent - March 2026,

Third-Party Package Updates in Splunk AppDynamics Database Agent - March 2026,

Third-Party Package Updates in Splunk AppDynamics NodeJS Agent - March 2026,

Third-Party Package Updates in Splunk AppDynamics Java Agent - March 2026,

Third-Party Package Updates in Splunk AppDynamics Private Synthetic Agent - March 2026,

Third-Party Package Updates in Splunk AppDynamics Machine Agent - March 2026,

Third-Party Package Updates in Splunk AppDynamics On-Premises Enterprise Console - March 2026,

Third-Party Package Updates in Splunk Enterprise - March 2026,

Sensitive Information Disclosure in Discover Splunk Observability Cloud app for Splunk Enterprise,

Sensitive Information Disclosure in MongoClient logging channel in Splunk Enterprise,

Sensitive Information Disclosure through Improper Access Control in Splunk Enterprise,

Remote Command Execution (RCE) through the '/splunkd/upload/indexing/preview' REST endpoint in Splunk Enterprise, and

Stored Cross-Site Scripting (XSS) through Path Traversal in Splunk Enterprise.

ABB Advisory #1 - ABB published an advisory that describes three vulnerabilities in their AWIN Gateways products.

ABB Advisory #2 - ABB published an advisory that discusses an out-of-bounds write vulnerability in their AC500 V3 product.

CODESYS Advisory - CODESYS published an advisory that describes a TOCTOU race condition vulnerability in their Installer product.

Eaton Advisory - Eaton published an advisory that describes a storing passwords in a recoverable format vulnerability in their EasySoft product.

GE Vernova Advisory - GE published a security statement on the US-Iran conflict.

Hitachi Advisory - Hitachi published an advisory that discusses an allocation of resources without limit or throttling vulnerability in their Command Suite product.

HMS Advisory #1 - HMS published an advisory that describes four vulnerabilities in their Ewon Flexy and Ewon Cosy+ gateways.

HMS Advisory #2 - HMS published an advisory that addresses HMS compliance with the EU Radio Equipment Directive 3.3.

HP Advisory #1 - HP published an advisory that discusses six vulnerabilities in multiple HP product lines.

HP Advisory #2 - HP published an advisory that discusses 43 vulnerabilities in their Device Manager product.

HP Advisory #3 - HP published an advisory that discusses two vulnerabilities in multiple HP product lines.

HPE Advisory #1 - HPE published an advisory that discusses an improper handling of values vulnerability in their Compute Scale-up Server 3200 Platform.

HPE Advisory #2 - HPE published an advisory that discusses eight vulnerabilities in multiple server products.

HPE Advisory #3 - HPE published an advisory that discusses a code injection vulnerability in their Telco Intelligent Assurance product.

HPE Advisory #4 - HPE published an advisory that describes five vulnerabilities in their Aruba Networking AOS-CX product.

 

For more information on these disclosures, including links to 3rd party advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-3-982 - subscription required.

Sunday, March 8, 2026

Review – Public ICS Disclosures – Week of 2-28-26 – Part 2

For Part 2 we have five additional vendor updates from FortiGuard (2), GE Vernova, HPE, and VMware. There are 12 researcher reports about vulnerabilities in products from Biosig Project (3), Honeywell, and Philips (8). Finally, we have six exploits for products from Honeywell, Splunk, WatchGuard, and Wireshark (3).

Updates

FortiGuard Update #1 - FortiGuard published an update for their OpenSSL advisory that was originally published on January 30th, 2026, and most recently updated on February25th, 2026.

FortiGuard Update #2 - FortiGuard published an update for their SSL-VPN bookmarks advisory that was originally published on October 14th, 2025.

GE Vernova Update - GE published an update for their Universal Relay advisory that was originally published on December 14th, 2025.

HPE Update - HPE published an update for their Aruba Networking EdgeConnect SD-WAN Orchestrator advisory that was originally published on January 14th, 2026, and most recently updated on February 10th, 2026.

VMware Update - Broadcom published an update for the VMware Aria Operations advisory that was originally published on February 24th, 2026.

Researcher Reports

Biosig Reports - Cisco Talos published three reports about vulnerabilities in the Biosig Project libbiosig library.

Honeywell Report - Zero Science published a report that describes an improper authentication for critical function vulnerability (with publicly available exploit) in the Honeywell Trend IQ4 building controller.

Philips Reports - ZDI published eight reports of vulnerabilities in the Philips Hue Bridge product that were disclosed in a recent Pwn2Own contest.

Exploits

Honeywell Exploit - Indoushka published a Metasploit module for an improper authentication for critical function vulnerability in the Honeywell Trend IQ4 product.

Splunk Exploit - Indoushka published an exploit for a function call with incorrectly specified argument value vulnerability in the Splunk Enterprise product.

WatchGuard Exploit - WatchTowr published an exploit for an out-of-bounds write vulnerability in the WatchGuard Fireware OS product.

Wireshark Exploit #1 - Indoushka published an exploit for an allocation of resources without limit or throttling vulnerabilities in the Wireshark USB HID Protocol Dissector.

Wireshark Exploit #2 - Indoushka published an exploit for a buffer overread vulnerability in the Wireshark Dissector product.

Wireshark Exploit #3 - Indoushka published an exploit for a NULL pointer dereference vulnerability in the Wireshark Dissector product.

 

For more information on these disclosures, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-2-bb7 - subscription required.

Saturday, November 15, 2025

Review – Public ICS Disclosures – Week of 11-8-25 – Part 1

A moderately busy Cyber Week. For Part 1 this week we have 18 vendor disclosures from GE Vernova (4), Hitachi (4), HP (4), HPE (3), Jumo, and Palo Alto Networks (2).

Advisories

GE Vernova Advisory #1 - GE Published an advisory that discusses three vulnerabilities in the Gas Power Controls products.

GE Vernova Advisory #2 - GE published an advisory that discusses an uncaught exception vulnerability for unlisted products using AVEVA PI Server and PI Data Archive.

GE Vernova Advisory #3 - GE published an advisory that describes a path traversal vulnerability in their Smallworld Master File Server (SWMFS) Software.

GE Vernova Advisory #4 - GE published an advisory that describes an improper authentication vulnerability in their Smallworld Master File Server (SWMFS) Software.

Hitachi Advisory #1 - Hitachi published an advisory that discusses 44 vulnerabilities in their Disk Array Systems. These are third-party (Microsoft) vulnerabilities.

Hitachi Advisory #2 - Hitachi published an advisory that discusses a covert timing channel vulnerability in their JP1 products.

Hitachi Advisory #3 - Hitachi published an advisory that discusses two vulnerabilities in their JP1 products.

Hitachi Advisory #4 - Hitachi published an advisory that discusses three vulnerabilities in their Cosminexus Developer's Kit for Java(TM) and Hitachi Developer's Kit for Java.

HP Advisory #1 - HP published an advisory that describes two exposure of sensitive information vulnerabilities in their LaserJet Pro Printers.

HP Advisory #2 - HP published an advisory that discusses three vulnerabilities in multiple HP product lines.

HP Advisory  #3 - HP published an advisory that discusses six vulnerabilities in multiple HP product lines.

HP Advisory #4 - HP published an advisory that discusses three vulnerabilities in multiple HP product lines.

HPE Advisory #1 - HPE published an advisory that discusses a stale translation lookaside buffer (TLB) entry vulnerability in their HPE SimpliVity servers.

HPE Advisory #2 - HPE published an advisory that discusses an active debug code vulnerability in their ProLiant DL, and Synergy Servers.

HPE Advisory #3 - HPE published an advisory that discusses a stale translation lookaside buffer (TLB) entry vulnerability in their ProLiant DL/XL servers.

Jumo Advisory - CERT VDE published an advisory that describes the use of a cryptographically weak PRNG vulnerability in the Jumo variTRON password generation algorithm.

Palo Alto Network Advisory # 1 - PAN published an advisory that discusses 23 vulnerabilities in their Prisma Browser.

Palo Alto Network Advisory #2 - PAN published an advisory that describes an improper check for unusual or exceptional conditions vulnerability in their PAN-OS and Prisma Access products.


For more information on these disclosures, including links to 3rd party advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-11-66f  - subscription required.

Saturday, March 1, 2025

Review – Public ICS Disclosures – Week of 2-21-25 – Part 1

For Part 1 this week we have 19 vendor disclosures from Broadcom (5), Delta Electronics, Eaton (2), GE Vernova, Hitachi (2), Hitachi Energy (3), HPE (2), Moxa, Pepperl+Fuchs, and Philips.

Advisories

Broadcom Advisory #1 - Broadcom published an advisory that discusses an out-of-bounds read vulnerability in their Brocade ASCG.

Broadcom Advisory #2 - Broadcom published an advisory that describes an unprotected transport of credentials vulnerability in their Brocade ASCG 3.2.0 web interface.

Broadcom Advisory #3 - Broadcom published an advisory that discusses an interpretation conflict vulnerability in multiple Brocade products.

Broadcom Advisory #4 - Broadcom published an advisory that discusses a static-code injection vulnerability (with available exploit) in their Brocade SANnav and Brocade Support Link products.

Broadcom Advisory #5 - Broadcom published an advisory that announces the availability of a Rocky Linux Kernel update in their Brocade Support Link product.

Delta Advisory - Delta published an advisory that describes a heap-based buffer overflow vulnerability in their CNCSoft-G2 product.

Eaton Advisory #1 - Eaton published an advisory that describes three vulnerabilities in their Foreseer Reporting Software.

Eaton Advisory #2 - Eaton published an advisory that describes an improper input validation vulnerability in their Network-M2 card.

GE Vernova Advisory - GE published an advisory for a vulnerability in their S1 Agile Engineering Tool Suite.

Hitachi Advisory #1 - Hitachi published an advisory that discusses a NULL pointer dereference vulnerability in their Configuration Manager products.

Hitachi Advisory #2 - Hitachi published an advisory that discusses an incorrect authorization vulnerability in multiple Hitachi products.

Hitachi Energy Advisory #1 - Hitachi Energy published an advisor that describes four vulnerabilities in their MACH gateway station product.

Hitachi Energy Advisory #2 - Hitachi Energy published an advisory that discusses 16 vulnerabilities in their Service Suite product.

Hitachi Energy Advisory #3 - Hitachi Energy published an advisory that discusses an uncontrolled search path element vulnerability in their MACH PS700 v2 system.

HPE Advisory #1 - HPE published an advisory that discusses two vulnerabilities (one with available exploit) in their Telco Service Activator product.

HPE Advisory #2 - HPE published an advisory that discusses two vulnerabilities (both with available exploits) in their NonStop CLIM product.

Moxa Advisory - Moxa published an advisory that describes an out-of-bounds write vulnerability in their EN 50155 Switches.

Pepperl+Fuchs Advisory - CERT-VDE published an advisory that discusses an integer underflow or wrap around vulnerability in their Pepperl+Fuchs HMI devices.

Philips Advisory - Philips published an advisory that “reports that a known hacker group is distributing malware disguised as Philips medical imaging viewer software (also known as DICOM viewer) to unsuspecting users via unauthorized sites and methods, including phishing techniques.”

 

For more information on these disclosures, including links to 3rd party advisories and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-2-326 - subscription required.

Saturday, February 1, 2025

Review – Public ICS Disclosures – Week of 1-25-25 – Part 1

This week we have vendor disclosures from ABB, Dell, GE Vernova, Hitachi (8), HPE (2), Medtronic, and Moxa.

Advisories

ABB Advisory - ABB published an advisory that describes a PHP remote file inclusion vulnerability in their FLXeon Controllers.

Dell Advisory - Dell published an advisory that discusses four vulnerabilities (three with publicly available exploits) in their Wyse Device Agent.

GE Vernova Advisory - GE published an advisory that describes vulnerabilities in their S1 Agile Engineering Tool Suite. The advisory is only available to registered customers.

Hitachi Advisory #1 - Hitachi published an advisory that discusses an exposure of sensitive information to an unauthorized actor vulnerability in their Ops Center Administrator and Common Services products.

Hitachi Advisory #2 - Hitachi published an advisory that discusses an improper restriction of rendered UI layers or frames vulnerability in their JP1/ServerConductor/Deployment Manager.

Hitachi Advisory #3 - Hitachi published an advisory that discusses two vulnerabilities in their Cosminexus HTTP Server and Hitachi Web Server.

Hitachi Advisory #4 - Hitachi published an advisory that discusses an inclusion of functionality from untrusted control sphere vulnerability in their Cosminexus HTTP Server and Hitachi Web Server.

Hitachi Advisory #5 - Hitachi published an advisory that discusses an improperly controlled sequential memory allocation vulnerability in their Cosminexus HTTP Server.

Hitachi Advisory #6 - Hitachi published an advisory that discusses an allocation of resources without limits or throttling vulnerability in their Cosminexus HTTP Server.

Hitachi Advisory #7 - Hitachi published an advisory that discusses two vulnerabilities in their Cosminexus HTTP Server and Hitachi Web Server.

Hitachi Advisory #8 - Hitachi published an advisory that discusses 45 vulnerabilities in their Hitachi Disk Array Systems.

HPE Advisory #1 - HPE published an advisory that describes five vulnerabilities in their Aruba Networking Fabric Composer.

HPE Advisory #2 - HPE published an advisory that discusses the Ransacked vulnerabilities.

Medtronic Advisory - Medtronic published an advisory that discusses the BeyondTrust command injection vulnerability.

Moxa Advisory - Moxa published an advisory that describes an out-of-bounds write vulnerability in their PT Switches.

 

For more information on these disclosures, including links to 3rd party advisories, researcher reports, and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-1-020 - subscription required.

Saturday, January 18, 2025

Review – Public ICS Disclosures – Week of 1-11-24 – Part 1

This week we have 37 vendor disclosures from B&R, Broadcom, FortiGuard (28), GE Vernova (2), HP (2), HPE (2), and Moxa (3).

Advisories

B&R Advisory - B&R published an advisory that describes a use of broken or risky cryptographic algorithm vulnerability in their Automation Run Time and Mapp View products.

Broadcom Advisory - Broadcom published an advisory that discusses two missing verification for short frame vulnerabilities in their Brocade ASCG product.

FortiGuard Advisory #1 - FortiGuard published an advisory that describes an operation on a resource after expiration or release vulnerability in their FortiManager product.

FortiGuard Advisory #2 - FortiGuard published an advisory that describes a path traversal vulnerability in their FortiAnalyzer and FortiManager products.

FortiGuard Advisory #3 - FortiGuard published an advisory that describes a path traversal vulnerability in their FortiManager product.

FortiGuard Advisory #4 - FortiGuard published an advisory that describes a path traversal vulnerability in their FortiAnalyzer and FortiManager products.

FortiGuard Advisory #5 - FortiGuard published an advisory that describes an authentication bypass using an alternate path or channel vulnerability (listed in CISA’s KEV catalog)  in their FortiOS and FortiProxy products vulnerability.

FortiGuard Advisory #6 - FortiGuard published an advisory that describes an OS command injection vulnerability in their FortiManager.

FortiGuard Advisory #7 - FortiGuard published an advisory that describes an insertion of sensitive data into sent data vulnerability in their FortiOS product.

FortiGuard Advisory #8 - FortiGuard published an advisory that describes an HTTP request/response splitting vulnerability in their FortiOS and FortiProxy products.

FortiGuard Advisory #9 - FortiGuard published an advisory that describes and OS command injection vulnerability in their FortiAP products.

FortiGuard Advisory #10 - FortiGuard published an advisory that describes the use of hard-coded cryptographic key vulnerability in their FortiSwitch products.

FortiGuard Advisory #11 - FortiGuard published an advisory that describes an origin validation error vulnerability in their FortOS products.

FortiGuard Advisory #12 - FortiGuard published an advisory that describes an integer overflow of wrap around vulnerability in their FortiOS products.

FortiGuard Advisory #13 - FortiGuard published an advisory that describes a missing authentication for critical function vulnerability in their FortiManager products.

FortiGuard Advisory #14 - FortiGuard published an advisory that describes an allocation of resources without limit or throttling vulnerability in their FortiOS products.

FortiGuard Advisory #15 - FortiGuard published an advisory that describes two incorrect privilege assignment vulnerabilities in their FortiAnalyzer and FortiManager products.

FortiGuard Advisory #16 - FortiGuard published an advisory that describes two NULL pointer dereference vulnerability in their FortiOS products.

FortiGuard Advisory #17 - FortiGuard published an advisory that describes an OS command injection vulnerability in their FortiManager products.

FortiGuard Advisory #18 - FortiGuard published an advisory that describes an out-of-bounds read vulnerability in their FortOS products.

FortiGuard Advisory #19 - FortiGuard published an advisory that describes an out-of-bounds write vulnerability in their ForiOS product.

FortiGuard Advisory #20 - FortiGuard published an advisory that describes an out-of-bounds write vulnerability in their FortiAnalyzer and FortiManager products.

FortiGuard Advisory #21 - FortiGuard published an advisory that describes two path traversal vulnerabilities in multiple FortiGuard products.

FortiGuard Advisory #22 - FortiGuard published an advisory that describes an OS command injection vulnerability in their FortiSwitch products.

FortiGuard Advisory #23 - FortiGuard published an advisory that describes an SQL injection vulnerability in their FortiAnalyzer and FortiManager products.

FortiGuard Advisory #24 - FortiGuard published an advisory that describes an out-of-bounds read vulnerability in their FortiOS products.

FortiGuard Advisory #25 - FortiGuard published an advisory that describes a stack-based buffer overflow vulnerability in their FortiAnalyzer and FortiManager products.

FortiGuard Advisory #26 - FortiGuard published an advisory that describes an allocation of resources without limit or throttling vulnerability in their FortiOS products.

FortiGuard Advisory #27 - FortiGuard published an advisory that describes 2 weak authentication vulnerabilities in multiple products.

FortiGuard Advisory #28 - FortiGuard published an advisory that describes an externally controlled reference to a resource in another sphere vulnerability in multiple FortiGuard products.

GE Vernova Advisory #1 - GE published an advisory that describes two vulnerabilities (both listed in CISA’s Known Exploited Vulnerabilities catalog) in their Control Server installations utilizing VMware vCenter Server.

GE Vernova Advisory #2 - GE published an advisory that discusses an Ivanti Security Controls incorrect default permissions vulnerability.

HP Advisory #1 - HP published an advisory that discusses seven vulnerabilities in multiple HP products.

HP Advisory #3 - HP published an advisory that discuses 468 vulnerabilities in their ThinPro computer.

HPE Advisory #1 - HPE published an advisory that describes two vulnerabilities in their AOS-8 and AOS-10 Command Line Interface.

HPE Advisory #2 - HPE published an advisory that discusses twelve vulnerabilities in their HP-UX Apache Web Server.

Moxa Advisory #1 - Moxa published an advisory that describes a missing authentication for critical function vulnerability in their Ethernet Switches.

Moxa Advisory #2 - Moxa published an advisory that describes a cross-site scripting vulnerability in their MGate 5121/5122/5123 series products.

Moxa Advisory #3 - Moxa published an advisory that describes a reliance on security through obscurity vulnerability in their EDS-508A series ether net switches.

 

For more information about these disclosures, including links to 3rd party advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-1-fd2 - subscription required.
 
/* Use this with templates/template-twocol.html */