Showing posts with label Honeywell. Show all posts
Showing posts with label Honeywell. Show all posts

Thursday, March 26, 2026

Review – 3 Advisories and 1 Update Published – 3-26-26

Today CISA’s NCCIC-ICS published three control system security advisories for products from PTC, OpenCode Systems, and WAGO. They also updated an advisory for products from Honeywell.

Advisories

PTC Advisory - This advisory describes a code injection vulnerability (with available indicators of compromise) in the PTC Windchill and FlexPLM product lifecycle management products.

OpenCode Advisory - This advisory describes an improper access control vulnerability in the OpenCode Systems OC Messaging and USSD Gateway.

WAGO Advisory - This advisory describes the a hidden functionality vulnerability in the WAGO Industrial Managed Switches.

Updates

Honeywell Update - This update provides additional information on the IQ4x BMS Controller advisory that was originally published on March 10th, 2026.

 

For more information on these advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/3-advisories-and-1-update-published-4be - subscription required.

Tuesday, March 10, 2026

Review – 3 Advisories and 3 Updates Published – 3-10-26

Today CISA’s NCCIC-ICS published three control system security advisories for products from Honeywell, Lantronix and Apeman. They also update three advisories for products from Mitsubishi Electric.

Advisories

Honeywell Advisory - This advisory describes a missing authentication for critical function vulnerability (with publicly available exploit) in the Honeywell IQ4x BMS Controller.

NOTE: I briefly discussed the Zero Science report on March 8th, 2026.

Lantronix Advisory - This advisory describes eight vulnerabilities in the Lantronix EDS3000PS and EDS5000 terminals.

Apeman Advisory - This advisory describes three vulnerabilities (each with publicly available exploits) in the Apeman ID71 cameras.

Updates

Mitsubishi Update #1 - This update provides additional information on the Iconics Digital Solutions advisory that was originally published on December 3rd, 2024, and most recently updated on January 8th, 2026.

Mitsubishi Update #2 - This update provides additional information on the Iconics Digital Solutions advisory that was originally published on July 2nd, 2024, and most recently updated on January 8th, 2026.

Mitsubishi Update #3 - This update provides additional information on the HMI SCADA advisory that was originally published on January 20th, 2022, and most recently updated on January 8th, 2026.

 

For more information on these advisories, including links to researcher reports and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/3-advisories-and-3-updates-published-ba4 - subscription required.

Sunday, March 8, 2026

Review – Public ICS Disclosures – Week of 2-28-26 – Part 2

For Part 2 we have five additional vendor updates from FortiGuard (2), GE Vernova, HPE, and VMware. There are 12 researcher reports about vulnerabilities in products from Biosig Project (3), Honeywell, and Philips (8). Finally, we have six exploits for products from Honeywell, Splunk, WatchGuard, and Wireshark (3).

Updates

FortiGuard Update #1 - FortiGuard published an update for their OpenSSL advisory that was originally published on January 30th, 2026, and most recently updated on February25th, 2026.

FortiGuard Update #2 - FortiGuard published an update for their SSL-VPN bookmarks advisory that was originally published on October 14th, 2025.

GE Vernova Update - GE published an update for their Universal Relay advisory that was originally published on December 14th, 2025.

HPE Update - HPE published an update for their Aruba Networking EdgeConnect SD-WAN Orchestrator advisory that was originally published on January 14th, 2026, and most recently updated on February 10th, 2026.

VMware Update - Broadcom published an update for the VMware Aria Operations advisory that was originally published on February 24th, 2026.

Researcher Reports

Biosig Reports - Cisco Talos published three reports about vulnerabilities in the Biosig Project libbiosig library.

Honeywell Report - Zero Science published a report that describes an improper authentication for critical function vulnerability (with publicly available exploit) in the Honeywell Trend IQ4 building controller.

Philips Reports - ZDI published eight reports of vulnerabilities in the Philips Hue Bridge product that were disclosed in a recent Pwn2Own contest.

Exploits

Honeywell Exploit - Indoushka published a Metasploit module for an improper authentication for critical function vulnerability in the Honeywell Trend IQ4 product.

Splunk Exploit - Indoushka published an exploit for a function call with incorrectly specified argument value vulnerability in the Splunk Enterprise product.

WatchGuard Exploit - WatchTowr published an exploit for an out-of-bounds write vulnerability in the WatchGuard Fireware OS product.

Wireshark Exploit #1 - Indoushka published an exploit for an allocation of resources without limit or throttling vulnerabilities in the Wireshark USB HID Protocol Dissector.

Wireshark Exploit #2 - Indoushka published an exploit for a buffer overread vulnerability in the Wireshark Dissector product.

Wireshark Exploit #3 - Indoushka published an exploit for a NULL pointer dereference vulnerability in the Wireshark Dissector product.

 

For more information on these disclosures, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-2-bb7 - subscription required.

Thursday, February 26, 2026

10 Advisories and 3 Updates Published – 2-26-26

Today CISA’s NCCIC-ICS published 10 control system security advisories for products from Copeland, Yokogawa, Mobility46, EV Energy, SWITCH EV, Chargemap, EV2GO, CloudCharge, Pelco, and Johnson Controls. They also published updates for advisories from Honeywell, Schneider Electric, and Hitachi Energy.

Advisories

Copeland Advisory - This advisory describes 23 vulnerabilities in the Copeland XWEB and XWEP Pro plant management software.

Yokogawa Advisory - This advisory describes six vulnerabilities in the Yokogaw Vnet/IP Interface Package used in their CENTUM VP R6 and R7 products.

Mobility46 Advisory - This advisory describes four vulnerabilities in the Mobility46 mobility46.se digital parking management and EV charging solution.

EV Energy Advisory - This advisory describes four vulnerabilities in the EV Energy ev.energy EV charging management solution.

SWITCH EV Advisory - This advisory describes four vulnerabilities in the SWITCH EV SwitchEnergy.com multiple EV charging systems management.

Chargemap Advisory - This advisory describes four vulnerabilities in the Chargemap Chargemap.com EV fleet charging management.

EV2GO Advisory - This advisory describes four vulnerabilities in the EV2GO ev2go.io charging infrastructure management.

CloudCharge Advisory - This advisory describes four vulnerabilities in the CloudCharge cloudcharge.se charging facility management.

Pelco Advisory - This advisory describes an authentication bypass using an alternate path or channel vulnerability in the Pelco Sarix Pro 3 Series IP Cameras.

Johnson Controls Advisory - This advisory describes six vulnerabilities in the Johnson Controls Frick Controls Quantum HD compressor control panel.

Updates

Honeywell Update - This update provides additional information on the HIB2PI and HDZ Series CCTV Cameras advisory that was originally published on February 17th, 2026.

Schneider Update - This update provides additional information on the EcoStruxure Power Operation advisory that was originally published on July 22nd, 2025.

NOTE: I briefly discussed this new information on February 15th, 2026.

Hitachi Energy Update - This update provides additional information on the Relion 670/650/SAM600-IO Series advisory that was originally published on May 13th, 2025, and most recently updated on June 5th, 2025.

NOTE: I briefly mentioned the Hitachi Energy update on February 1st, 2026.

 

For more information on these advisories, including a DTRH look at EV charger cybersecurity research, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/10-advisories-and-3-updates-published-7f5 - subscription required.

Tuesday, February 17, 2026

Review – 4 Advisories Published – 2-17-26

Today CISA published four control system security advisories for products from Honeywell, GE Vernova, Delta Electronics, and Siemens.

Advisories

Honeywell Advisory - This advisory describes a missing authentication for critical function vulnerability in the Honeywell CCTV Products.

GE Advisory - This advisory describes two vulnerabilities in the Vernova Enervista UR Setup tool.

Delta Advisory - This advisory describes a stack-based buffer overflow vulnerability in the Delta ASDA-Soft configuration software.

NOTE: I briefly discussed this vulnerability on February 7th, 2026.

Siemens Advisory - This advisory that describes six vulnerabilities in their Simcenter Femap and Nastran products.

NOTE: I briefly discussed these vulnerabilities on February 14th, 2026.

 

For more information on these advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/4-advisories-published-2-17-26 - subscription required.

Saturday, September 27, 2025

Review – Public ICS Disclosures – Week of 9-20-25

This week we have nine vendor disclosures from Delta Electronics, Honeywell, HP (3), HPE, Philips, Rockwell, and WAGO. There are also three vendor updates from HPE, WAGO, and Welotec.

Advisories

Delta Advisory - Delta published an advisory that describes two stack-based buffer overflow vulnerabilities in their CNCSoft-G2 product.

Honeywell Advisory - Honeywell published an end-of-life notice for the legacy integrations in their Pro-Watch product.

HP Advisory #1 - HP published an advisory that discusses seven vulnerabilities in multiple HP product lines.

HP Advisory #2 - HP published an advisory that discusses six vulnerabilities (with publicly available exploits) in multiple PC product lines.

HP Advisory #3 - HP published an advisory that discusses four vulnerabilities in multiple product lines.

HPE Advisory - HPE published an advisory that discusses an out-of-bounds read vulnerability in their HPE Superdome Flex and Compute Scale-up Server 3200.

Philips Advisory - Philips published an advisory that discusses the Shai-Hulud worm.

Rockwell Advisory - Rockwell published an advisory that discusses a stack-based buffer overflow vulnerability in their Stratix products.

WAGO Advisory - CERT-VDE published an advisory that describes two missing authentication for critical function vulnerabilities in the WAGO Software Device Sphere and Software Solution Builder.

Updates

HPE Update - HPE published an update for their Blast-RADIUS advisory that was originally published on July 9th, 2024, and most recently updated on January 22nc, 2025.

WAGO Update - CERT-VDE published an update for the WAGO 750-8xx Controller advisory that was originally published on August 17th, 2018, and most recently updated on May 22nd, 2025.

Welotec Update - CERT-VDE published an update for the Welotec SmartEMS Upload advisory that was originally published on September 10th, 2025.

 

For more information on these disclosures, including links to 3rd party advisories, researcher reports, and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-9-0a8 - subscription required.

Thursday, September 4, 2025

Review – 1 Advisory and 4 Updates Published – 9-4-25

Today CISA’s NCCIC-ICS published one control system security advisory for products from Honeywell. They also updated advisories for products from End-of-Train, Honeywell, Delta Electronics, and Mitsubishi Electric Iconics Digital Solutions.

Advisories

Honeywell Advisory - This advisory describes four vulnerabilities in the Honeywell OneWireless wireless device manager (WDM).

Updates

End-of-Train Update - This update provides additional information on the End-of-Train advisory that was originally published on July 10th, 2025, and most recently updated on August 12th, 2025.

Honeywell Update - This update provides additional information on the Experion PKS advisory that was originally published on July 24th, 2025.

Delta Update - This update provides additional information on the COMMGR advisory that was originally published on April 15th, 2025.

Mitsubishi Update - This update provides additional information on the ICONICS Product Suite advisory that was originally published on August 5th, 2025.

 

For more information on these advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/1-advisory-and-4-updates-published - subscription required.

Saturday, August 23, 2025

Review – Public ICS Disclosures – Week of 8-16-25

This is a moderately busy disclosure week. We have bulk disclosures from HPE (7). This week we have five additional vendor disclosures from Delta Electronics, Honeywell, HP, SMA, and Weissmann & Theis. We have bulk updates from Dell (5). We have three vendor updates from HPE and Siemens (2). There is also a researcher report for a vulnerability in a product from Ilevia. Finally, we have an exploit for products from Lantronix.

Bulk Disclosures

HPE published 7 disclosures.

Advisories

Delta Advisory - Delta published an advisory that describes four cross-site scripting vulnerabilities in their DIAEnergie products.

Honeywell Advisory - Honeywell published an end-of-life notice for their Select 60 Series cameras.

HP Advisory - HP published an advisory that discusses two vulnerabilities in their Security Manager product.

SMA Advisory - CERT-VDE published an advisory that describes an exposure of private personal data to an unauthorized actor vulnerability in the SMA ennexos.sunnyportal.com.

Wiesemann Advisory - CERT-VDE published an advisory that describes a missing authentication for critical function vulnerability in the Wiesemann Motherbox 3 product.

Bulk Updates

Dell published five updates for their Wyse product line.

Updates

HPE Updates - HPE published an update for their ProLiant DL/ML/XL advisory that was originally published on August 12th, 2025.

Siemens Update #1 - Siemens published an update for their Desigo CC Product Family advisory that was originally published on August 14th, 2025.

Siemens Update #2 - Siemens published an update for their e OPC UA Implementations advisory that was originally published on September 12th, 2023, and most recently updated on January 14th, 2025.

Researcher Reports

Ilevia Report - Zero Science published a report describing a server-side logging vulnerability (with publicly available exploit) in the Ilevia EVE X1 Server.

Exploits

Lantronix Exploit - Byte Reaper published an exploit for an improper restriction of XML external entity reference vulnerability in the Lantronix Provisioning Manager.


For more information on these disclosures, including links to 3rd party advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-8-86f - subscription required.


Thursday, July 24, 2025

Review – 5 Advisories and an Update Published – 7-24-25

Today CISA’s NCCIC-ICS published four control system security advisories for products from LG Innotek, Honeywell, Network Thermostat, and Mitsubishi Electric, as well as a medical device security advisory for products from Medtronic. They also updated an advisory for products from ICONICS/Mitsubishi.

Advisories

LG Advisory - This advisory describes an authentication bypass using an alternate path or channel vulnerability in the LG Innotek camera model LNV510R.

Honeywell Advisory - This advisory describes six vulnerabilities in the Honeywell Experion PKS. The vulnerabilities were reported by Positive Technologies.

Network Thermostat Advisory - This advisory describes a missing authentication for critical function vulnerability in the Network Thermostat X-Series WiFi thermostats.

Mitsubishi Advisory - This advisory discusses an uncontrolled search path element vulnerability in the Mitsubishi CNC Series products.

Medtronic Advisory - This advisory describes three vulnerabilities in the Medtronic MyCareLink Patient Monitors.

Updates

Mitsubishi Update - This update provides additional information on the MC Works64 advisory that was originally published on July 26th, 2022.

 

For more information on these advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/5-advisories-and-an-update-published - subscription required.

Saturday, May 10, 2025

Review – Public ICS Disclosures – Week of 5-3-25

This week we have a relatively light disclosure week with 11 vendor disclosures from Dell (5), Delta Electronics, Honeywell, HP (2), RT Labs, and Wiesemann & Theis. We also have 10vendor updates from FortiGurad (6), HPE, Moxa, and Omron (2). Finally we have three researcher reports for vulnerabilities in products from Kunbus, and libplctags (2).

Advisories

Dell Advisory #1 - Dell published an advisory that discusses 41 vulnerabilities in their Dell Networking OS10 product.

Dell Advisory #2 - Dell published an advisory that describes a use of hard-coded credentials vulnerability in their Dell Networking OS10 product.

Dell Advisory #3 - Dell published an advisory that discusses three vulnerabilities in their EMC Networking OS10 product.

Dell Advisory #4 - Dell published an advisory that discusses eleven vulnerabilities (three with publicly available exploits) in their Dell Wyse Management Suite product.

Dell Advisory #5 - Dell published an advisory that describes an OS command injection vulnerability in their Dell Networking OS10 product.

Delta Advisory - Delta published an advisory that describes four out-of-bounds write vulnerabilities in their CNCSoft product.

Honeywell Advisory - Honeywell published an advisory that describes an OS command injection vulnerability in the MB-Secure and MB-Secure PRO building security manager.

HP Advisory #1 - HP published an advisory that discusses an integer overflow or wrap around vulnerability (with a publicly available exploit) in their HP Universal Scan.

HP Advisory #2 - HP published an advisory that discusses three vulnerabilities in multiple HP product lines.

RT Labs Advisory - RT Labs published an advisory that describes 10 vulnerabilities in their P-Net Profinet stack.

Wiesemann Advisory - CERT-VDE published an advisory that describes a cross-site scripting vulnerability in multiple Wiesemann & Theis products.

Updates

FortiGuard Update #1 - FortiGuard published an update for their ipsec ike advisory that was originally published on January 14th, 2025, and most recently updated on April 11th, 2025.

FortiGuard Update #2 - FortiGuard published an update for their cross-site scripting advisory that was originally published on February 11th, 2025.

FortiGuard Update #3 - FortiGuard published an update for their OS command injection advisory that was originally published on January 14th, 2025.

FortiGuard Update #4 - FortiGuard published an update for their vm download feature advisory that was originally published on March 11th, 2025.

FortiGuard Update #5 - FortiGuard published an update for their execute sensitive operations advisory that was originally published on May 14th, 2024.

FortiGuard Update #6 - FortiGuard published an update for their device del feature advisory that was originally published on March 11th, 2025.

HPE Update - HPE published an update for their ProLiant DL/XL Servers advisory that was originally published on March 10th, 2025.

Moxa Update - Moxa published an update for their command injection advisory that was originally published on April 2nd, 2025.

Omron Update #1 - Omron published an update for their NJ/NX-series Machine advisory that was originally published on January 14th, 2025.

Omron Update #2 - Omron published an update for their CX-Programmer advisory that was originally published on April 22nd, 2025.

Researcher Reports

Kunbus Report - Pen Test Partners published a report that describes four vulnerabilities in the Kunbus Revolution Pi industrial PLCs.

libplctags Report - Nozomi Networks published two reports that described individual vulnerabilities in the libplctags library.

 

For more information on these disclosures, including links to 3rd party advisories, researcher reports, and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-5-ebb - subscription required.


Saturday, April 5, 2025

Review – Public ICS Disclosures – Week of 3-29-25 – Part 1

This week we have 18 vendor disclosures from Honeywell (3), HP, HPE, Inaba Denki Sangyo (2), JTEKT (2), Meinberg, PcVue, Philips (3), and SEL (4).

Advisories

Honeywell Advisory #1 - Honeywell published an end-of-life notice for their PWLP Mercury Series 3/LP Series Intelligent Controllers.

Honeywell Advisory #2 - Honeywell published an end-of-life notice for their 30 Series 5MP Fisheye Camera.

Honeywell Advisory #3 - Honeywell published an end-of-life notice for their VMS R670 & R700 / NVR6.7 & R7.0.

HP Advisory - HP published an advisory that discusses three vulnerabilities in multiple HP products.

HPE Advisory - HPE published an advisory that describes two vulnerabilities (one with publicly available exploit) in their Aruba Networking Virtual Intranet Access (VIA) Client.

IDS Advisory - JP-CERT published an advisory that describes eight vulnerabilities in the IDS Wi-Fi AP UNIT 'AC-WPS-11ac series'.

JTEKT Advisory #1 - JTEKT published an advisory that describes six vulnerabilities in their HMI View Jet C-more series.

JTEKT Advisory #2 - JTEKT published an advisory that describes two vulnerabilities in their HMI GC-A2 series.

Meinberg Advisory - Meinberg published an advisory that discusses five vulnerabilities in their Lantime product.

PcVue Advisory - PcVue published an advisory that discusses a NULL pointer dereference vulnerability in their IEC 61850 client driver and the ICCP client add-on in PcVue.

Philips Advisory #1 - Philips published an advisory that discusses an authorization bypass (CVE-2025-29927) that affects Next.js.

Philips Advisory #2 - Philips published an advisory that discusses a Chromium sandbox escape vulnerability that is listed in the CISA Known Exploited Vulnerabilities catalog.

Philips Advisory #3 - Philips published an advisory that discusses a recent Oracle Health data breach.

SEL Advisory #1 - SEL published a software update notice that reports cybersecurity upgrades in their SEL-5052 Server Software.

SEL Advisory #2 - SEL published a software update notice that reports cybersecurity upgrades in their SEL Compass product.

SEL Advisory #3 - SEL published a software update notice that reports cybersecurity upgrades in their SEL-5030 acSELerator QuickSet Software.

SEL Advisory #4 - SEL published a software update notice that reports cybersecurity upgrades in their SEL-5033 acSELerator RTAC Software.

 

For more information on these disclosures, including links to 3rd party advisories, researcher reports, and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-3-81f - subscription required.

Saturday, June 29, 2024

Review – Public ICS Disclosures – Week of 6-22-24 – Part 1

This week we have 18 vendor disclosures from ABB, Hitachi (3), Hitachi Energy, Honeywell, HP (5), HPE, Moxa, Rockwell, and VMware (3).

Advisories

ABB Advisory - ABB published an advisory that discusses an untrusted search path vulnerability in their PCM600 Installer product.

Hitachi Advisory #1 - Hitachi published an advisory that discusses two vulnerabilities in their Storage Provider for VMware vCenter product.

Hitachi Advisory #2 - Hitachi published an advisory that describes an incorrect default permissions vulnerability in their Storage Provider for VMware vCenter.

Hitachi Advisory #3 - Hitachi published an advisory that discusses 36 vulnerabilities in their Disk Array products.

Hitachi Energy Advisory - Hitachi Energy published an advisory that discusses four vulnerabilities in their AFS/AFR series products.

Honeywell Advisory - Honeywell published an advisory that discusses an uncontrolled search path vulnerability in their MAXPRO NVR Computer.

HP Advisory #1 - HP published an advisory that discusses the Zenbleed vulnerability in their AMD Client UEFI.

HP Advisory #2 - HP published an advisory that describes a TOCTOU vulnerability in their PC Bios products.

HP Advisory #3 - HP published an advisory that describes three vulnerabilities in multiple HP PC products.

HP Advisory #4 - HP published an advisory that discusses the LogoFAIL vulnerabilities in multiple PC Bios products.

HP Advisory #5 - HP published an advisory that discusses an uncontrolled search path element vulnerability in multiple HP PC products.

HPE Advisory #1 - HPE published an advisory that discusses ten vulnerabilities in their ProLiant DL/XL Servers and Cray Supercomputer products.

HPE Advisory #2 - HPE published an advisory that describes a code injection vulnerability in their Athonet Mobile Core.

Moxa Advisory - Moxa published an advisory that describes three vulnerabilities in their EDS-405A/408A Series products.

Rockwell Advisory - Rockwell published an advisory that describes three improper input validation vulnerabilities in their ThinManager ThinServer product.

VMware Advisory #1 - Broadcom published an advisory that describes three vulnerabilities in their ESXi and vCenter Server products.

VMware Advisory #2 - Broadcom published an advisory that describes an improper privilege management vulnerability in their Cloud Director product.

VMware Advisory #3 - Broadcom published an advisory that describes an insertion of sensitive information vulnerability in their Cloud Director Object Storage Extension.

 

For more information on these disclosures, including 3rd party reports, researcher reports, and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-6-601 - subscription required.

Saturday, June 15, 2024

Review – Public ICS Disclosures – Week of 6-8-24 – Part 1

This week we have 28 vendor disclosures from ABB, Broadcom (2), FortiGuard (5), Hitachi Energy (6), Honeywell, HP (4), HPE (3), Palo Alto Networks (4), Phillips, and Phoenix Contact.

Advisories

ABB Advisory - The ABB security ‘Alerts and Notifications’ page lists an advisory (or maybe an update) for “ABB 800xA Base 6.0.x, 6.1.x CSLib communication DoS vulnerability”.

Broadcom Advisory #1 - Broadcom published an advisory that discusses seven vulnerabilities in their Brocade SANnav product.

Broadcom Advisory #2 - Broadcom published an advisory that that discusses seven vulnerabilities in their Brocade SANnav product.

FortiGuard Advisory #1 - FortiGuard published an advisory that describes a use of password hash with insufficient computational effort vulnerability in their FortiOS and FortiProxy products.

FortiGuard Advisory #2 - FortiGuard published an advisory that describes a stack-based buffer overflow vulnerability in their FortiOS product.

FortiGuard Advisory #3 - FortiGuard published an advisory that describes a stack-based buffer overflow vulnerability in their FortiOS product.

FortiGuard Advisory #4 - FortiGuard published an advisory that describes a cross-site scripting vulnerability in their FortiOS and FortiProxy products.

FortiGuard Advisory #5 - FortiGuard published an advisory that describes a stack-based buffer overflow vulnerability in multiple FortiGuard product.

Hitachi Energy Advisory #1 - Hitachi Energy published an advisory that describes an improper validation of certificate with host mismatch vulnerability in their UNEM/ECST product.

Hitachi Energy Advisory #2 - Hitachi Energy published an advisory that describes an improper validation of certificate with host mismatch vulnerability in their FOXMANUN/FOXCST product.

Hitachi Energy Advisory #3 - Hitachi Energy published an advisory that describes a relative path traversal vulnerability in their XMC20 product.

Hitachi Energy Advisory #4 - Hitachi Energy published an advisory that describes a relative path traversal vulnerability in their FOX61x product.

Hitachi Energy Advisory #5 - Hitachi Energy published an advisory that describes eight vulnerabilities in their UNEM product.

Hitachi Energy Adviosry #6 - Hitachi Energy published an advisory that describes eight vulnerabilities in their FOXMAN-UN product.

Honeywell Advisory - Honeywell published an end-of-life notice for their “T” Series OmniSmart and Signo Readers.

HP Advisory #1 - HP published an advisory that describes two privilege escalation vulnerabilities in multiple HP products.

HP Advisory #2 - HP published an advisory that describes an information disclosure vulnerability in their Advance Mobile Application.

HP Advisory #3 - HP published an advisory that discusses two vulnerabilities in multiple HP products.

HP Advisory #4 - HP published an advisory that discusses an arbitrary code execution vulnerability in multiple HP products.

HPE Advisory #1 - HPE published an advisory that discusses two vulnerabilities (one with known exploit) in their Aruba Networking AirWave Management Platform.

HPE Advisory #2 - HPE published an advisory that discusses 25 vulnerabilities (17 with known exploits) in their Unified Topology Manager.

HPE Advisory #3 - HPE published an advisory that describes an arbitrary code execution vulnerability in their ProLiant Servers.

Palo Alto Networks Advisory #1 - Palo Alto Networks published an advisory that describes an improper privilege management vulnerability in their Cortex XDR Agent.

Palo Alto Networks Advisory #2 - Palo Alto Networks published an advisory that describes an insertion of sensitive information into a log file vulnerability in their GlobalProtect app.

Palo Alto Networks Advisory #3 - Palo Alto Networks published an advisory that describes an improper privilege management vulnerability in their Cortex XDR Agent.

Palo Alto Networks Advisory  #4 - Palo Alto Networks published an advisory that describes a cross-site scripting vulnerability in their Prisma Cloud Compute product.

Philips Advisory - Philips published an advisory that discusses the recent attacks on the Snowflake cloud platform.

Phoenix Contact Advisory - Phoenix Contact published an advisory that discusses an unbounded memory growth vulnerability in their FL MGUARD 1102/1105 products.

 

For more information on these disclosures, including links to 3rd party advisories and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-6-b93 - subscription required.

Saturday, May 25, 2024

Review – Public ICS Disclosures – Week of 5-18-24

This week we have 13 vendor disclosures from Broadcom (3), Cisco, Fujitsu, HP (2), HPE, Philips, QNAP, WAGO (2), WithSecure, and Zyxel. We also have two vendor updates from Broadcom and HPE. Finally, we have ten researcher reports for products from FortiGuard, Honeywell, Mitsubishi, Siemens, TP-Link (5), and TVT.

Advisories

Broadcom Advisory #1 - Broadcom published an advisory that discusses a deserialization of untrusted data vulnerability in their Brocade Fabric OS, Brocade SANnav, and Brocade Support Link products.

Broadcom Advisory #2 - Broadcom published an advisory that discusses six inadequate access control vulnerabilities in their Brocade SANnav product.

Broadcom Advisory #3 - Broadcom published an advisory that describes a missing authentication for critical resource vulnerability in their Brocade SANnav product.

Cisco Advisory - Cisco published an advisory that describes an authentication bypass by spoofing vulnerability in their Snort 3 HTTP Intrusion Prevention System.

Fujitsu Advisory - Fujitsu published an advisory that discusses four vulnerabilities in multiple Fujitsu products.

HP Advisory #1 - HP published an advisory that describes a cross-site scripting vulnerability in their LaserJet Pro devices.

HP Advisory #2 - HP published an advisory that describes an SMTP server information disclosure vulnerability in their Laser Jet Pro printers.

NOTE: This link to this advisory is currently leading to a blank page.

HPE Advisories - HPE published 46 Critical Product Security Vulnerability Alerts. See this post for background information on these products.

Philips Advisory - Philips published an advisory that discusses the HPE authorization bypass through user-controlled key vulnerability.

QNAP Advisory - QNAP published an advisory that describes five vulnerabilities in their QTS and QuTS hero products.

WAGO Advisory #1 - CERT-VDE published an advisory that discusses 17 vulnerabilities in multiple WAGO products.

WAGO Advisory #2 - CERT-VDE published an advisory that discusses two vulnerabilities in WAGO Navigator.

WithSecure Advisory - WithSecure published an advisory that describes a link following vulnerability in their Windows endpoint product.

Zyxel Advisory - Zyxel published an advisory that describes two classic buffer overflow vulnerabilities in their 5G NR/4G LTE CPE, DSL/Ethernet CPE, fiber ONT, and WiFi extender.

Updates

Broadcom Update - Broadcom published an update for their remote code execution advisory that was originally published on April 1st, 2024.

HPE Update - HPE published an update for their Aruba ArubaOS advisory that was originally published on April 30th, 2024.

Researcher Reports

FortiGuard Report - Horizon3 published a report describing an OS command injection vulnerability in the Fortinet FortiSIEM product.

Honeywell Report - Claroty published a report describing two vulnerabilities in the Honeywell ControlEdge Virtual Unit Operations Center (UOC).

Mitsubishi Report - Positive Technologies published a report describing five vulnerabilities in the Mitsubishi MELSEC System Q and MELSEC System L series PLC processor modules.

Siemens Report - SEC Consult published a report describing an exposed serial shell vulnerability on multiple Siemens PLCs.

TP-Link Reports - ZDI published five reports of vulnerabilities in the TP-Link TP-Link Omada ER605 PPTP VPN.

TVT Report - SSD-Disclosure published a report that describes an exposure of sensitive information vulnerability in the TVT NVMS9000 surveillance management system.

 

For more information on these disclosures, including links to 3rd party advisories and researcher reports, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-5-329 - subscription required.

Saturday, May 11, 2024

Review – Public ICS Disclosures – Week of 5-4-24

This week we have 12 vendor disclosures from Aruba Networks, CODESYS, Honeywell, HP, Moxa, SEL (4), Socomec, and Westermo (2). There are also two vendor updates from Broadcom and HP. Eleven researcher reports are available for vulnerabilities in products from Dassault Systèmes (11). Finally, we have six exploits for products from Elber.

Advisories

Aruba Advisory - Aruba published an advisory that discusses the Terrapin-Attack vulnerability.

CODESYS Advisory - CODESYS published an advisory that describes two vulnerabilities in their Development System V2.3 products.

Honeywell Advisory - Honeywell Advisory published an end-of-life notice for their Pro-Watch 5.0 product.

HP Advisory - HP published an advisory that discusses an uncontrolled resource consumption vulnerability in their Teradici PCoIP Management Console.

Moxa Advisory - Moxa published an advisory that describes a cross-site scripting vulnerability in their NPort 5100A series products.

SEL Advisory #1 - SEL published an advisory that announced that the latest version of their Blueframe OS fixed three cybersecurity issues.

SEL Advisory #2 - SEL published an advisory that announced that the most recent SEL-3350-1 BIOS update fixed 10 vulnerabilities (nine of which have available exploits).

SEL Advisory #3 - SEL published an advisory that announced that the latest update for their SEL-3355-2/SEL-3360-2 Intel Management Engine included fixes for two vulnerabilities.

SEL Advisory #4 - SEL published an advisory that announced that the most recent SEL-3355-2/SEL-3360-2 BIOS update fixed 10 vulnerabilities (nine of which have available exploits).

Socomec Advisory - INCIBE-CERT published an advisory that describes two vulnerabilities in the Socomec NET VISION 7, UPS WEB/SNMP Ethernet Card.

Westermo Advisory #1 - Westermo published an advisory that describes four vulnerabilities in their EDW-100 serial to Ethernet converter.

Westermo Advisory #2 - Westermo published an advisory that describes a cleartext transmission of sensitive information vulnerability in their WeOS.

Updates

Broadcom Update - Broadcom published an update for their SANnav exposes Kafka advisory that was originally published on April 25th, 2024 and most recently updated on April 30th, 2024.

HP Update - HP published an update for their Plantronics Hub advisory that was originally published on December 20th, 2023.

Researcher Reports

Dassault Reports - The Zero Day Initiative published eleven reports for individual vulnerabilities in the Dassault Systèmes eDrawings Viewer.

Exploits

Elber Exploits - LiquidWorm published six exploits for vulnerabilities in three products from Elber.

 

For more details about these disclosures, including links to 3rd party advisories, researcher reports, and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-5-89b - subscription required.

Thursday, April 25, 2024

Review – 4 Advisories and 4 Updates Published

Today, CISA’s NCCIC-ICS published four control system security advisories for products from Honeywell, Siemens and Hitachi Energy (2). They also updated advisories for products from Mitsubishi (2), Rockwell and Chirp Systems.

Advisories

Honeywell Advisory - This advisory describes 16 vulnerabilities in multiple Honeywell products.

Siemens Advisory - This advisory discusses a command injection vulnerability {that is listed on CISA’s Known Exploit Vulnerabilities (KEV) Catalog} in the Siemens RUGGEDCOM APE1808 application hosting platform.

Hitachi Energy Advisory #1 - This advisory describes two vulnerabilities in the Hitachi Energy MACH SCM product.

Hitachi Energy Advisory #2 - This advisory describes two unrestricted upload of files with dangerous type vulnerabilities in the Hitachi Energy RTU500 Series.

Updates

Mitsubishi Update #1 - This update provides additional information on the MELSEC Series CPU Module advisory that was originally published on May 23rd, 2023 and most recently updated on March 14th, 2024.

Mitsubishi Update #2 - This update provides additional information on the MELSEC iQ-R Series/iQ-F Series advisory that was originally published on June 6th, 2023.

Rockwell Update - This update provides additional information on the 5015-AENFTXT advisory that was originally published on April 11th, 2024.

Chirp Systems Update - This update provides additional information on the Chirp Access advisory that was originally published on March 7th, 2024 and most recently updated on April 23rd, 2024.

 

For more information on the these advisories, including a brief commentary on the Chirp Systems update, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/4-advisories-and-4-updates-published - subscription required. 

Saturday, March 23, 2024

Review – Public ICS Disclosures – Week of 3-16-24

This week we have eight vendor disclosures from Belden, Bosch, Buffalo Tech, Honeywell, HP, Planet Technology, and Rockwell (2). There are five vendor updates from Eaton, HP (2), Palo Alto Networks, and QNAP. We have two researcher reports for vulnerabilities in products from FortiGuard and Unitronics. Finally, we have four exploits for products from APC and TELSAT (3).

Advisories

Belden Advisory - Belden published an advisory that discusses five vulnerabilities in multiple Hirschmann products.

Bosch Advisory - Bosch published an advisory that describes a command injection vulnerability in their Network Synchronizer.

Buffalo Advisory - JP-CERT published an advisory that describes an insufficient data validation vulnerability in the Buffalo LinkStation 200 series NAS.

Honeywell Advisory - Honeywell published an advisory that describes a cross-site scripting vulnerability in their MPA2 Web Application.

HP Advisory - HP published an advisory that describes a denial of service vulnerability in their OfficeJet Pro printers.

Planet Advisory - Incibe-CERT published an advisory that describes three vulnerabilities in the Planet IGS-4215-16T2S industrial ethernet switch.

Rockwell Advisory #1 - Rockwell published an advisory that describes an improper security protection for remote restart action vulnerability in their FactoryTalk® View ME on PanelView.

Rockwell Advisory #2 - Rockwell published an advisory that describes three vulnerabilities in their PowerFlex® 527 product.

UPDATES

Eaton Update - Eaton published an update for their User Management System advisory that was originally published on November 24th, 2023 and most recently updated on December 20th, 2023.

HP Update #1 - HP published an update for their Intel 2023.4 IPU advisory that was originally published on December 11th, 2023 and most recently updated January 9th, 2024.

HP Update #2 - HP published an update for their AMD Client UEFI firmware advisory that was originally published on December 7th, 2023 and most recently updated on January 5th, 2024.

Researcher Reports

FortiGuard Report - Horizon3 published a report describing an SQL injection vulnerability in the FortiGuard FortiClient EMS product.

Unitronics Report - Claroty published a report describing eight vulnerabilities in the Unitronics UniStream integrated PLC/HMI products.

Exploits

APC Exploit - Victor Garcia published an exploit for a path traversal vulnerability in the APC UPS Network Management Card.

TELSAT Exploits - LIQUIDWORM published exploits for three vulnerabilities in the TELSAT marKoni FM Transmitter.

 

For more information on these disclosures, including links to 3rd party advisories and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-3-051 - subscription required.

Saturday, March 16, 2024

Review – Public ICS Disclosures – Week of 2-9-24 – Part 2

For Part 2 we have four additional vendor disclosures from Schneider, Softing, WAGO, and Western Digital. We also have 17 vendor updates from Dell, HP (5), and Siemens (11). There is a researcher report about vulnerabilities in products from FortiGuard. Finally, we have five exploits for products from FortiGuard, Hitachi, Honeywell, Solar View, and VMware.

Advisories

Schneider Advisory - Schneider published an advisory that describes three vulnerabilities in their Easergy T200 RTU product line.

Softing Advisory - Softing published an advisory that describes a missing release of memory after effective lifetime vulnerability in their UA Toolkit and smartLink products.

WAGO Advisory - CERT-VDE published an advisory that describes two vulnerabilities in the WAGO 750-8xx series PLCs.

Western Digital - Western Digital published an advisory that describes an uncontrolled search path element vulnerability in their SanDisk PrivateAccess Desktop App.

Updates

Dell Updates - Dell published an update for their Wyse Password Encoder advisory that was originally published on February 1st, 2019.

HP Update #1 - HP published an update for their Intel 2023.4 IPU advisory that was originally published on December 11th, 2023.

HP Update #2 - HP published an update for their AMI UEFI Firmware advisory that was originally published on January 26th, 2024.

HP Update #3 - HP published an update for their Intel Graphics Drivers advisory that was originally published on November 15th, 2023.

HP Update #4 - HP published an update for their AMD SMM Supervisor advisory that was originally published on December 7th, 2023.

HP Update #5 - HP published an update for their AMD Client UEFI Firmware advisory that was originally published on January 8th, 2024.

Siemens Update #1 - Siemens published an update for their n SIMATIC STEP 7 advisory that was originally published on June 13th, 2023.

Siemens Update #2 - Siemens published an update for their SINEC NMS advisory that was originally published on February 13th, 2023.

Siemens Update #3 - Siemens published an update for their Polarion ALM advisory that was originally published on February 13th, 2024.

Siemens Update #4 - Siemens published an update for their e OPC UA Implementation advisory that was originally published on September 12th, 2023 and most recently updated on February 13th, 2024.

Siemens Update #5 - Siemens published an update for their Web Server of Industrial Products Advisory that was originally published on December 12, 2023.

Siemens Update #6 - Siemens published an update for their SIMATIC S7-1500 CPUs advisory that was originally published on December 12th, 2023.

Siemens Update #7 - Siemens published an update for their SIPROTEC 5 Devices advisory that was originally published on December 13th, 2022 and most recently updated on September 12th, 2023.

Siemens Update #8 - Siemens published an update for their GNU/Linux subsystem advisory that was originally published on December 12th, 2023 and most recently updated on February 13th, 2024.

Siemens Update #9 - Siemens published an update for their SCALANCE XB-200 / XC-200 / XP-200 / XF-200BA / XR-300WG Family that was originally published on November 14th, 2023 and most recently updated on December 12th, 2023.

Siemens Update #10 - Siemens published an update for their SIPROTEC 5 Devices advisory that was originally published on April 11th, 2023 and most recently updated on September 12, 2023.

Siemens Update #11 - Siemens published an update for their Simcenter Femap advisory that was originally published on February 13th, 2024.

Researcher Reports

FortiGuard Report - Horizon3 published a report describing six vulnerabilities in the Fortinet FortiWLM product.

Exploits

FortiGuard Exploit - H4x0r-dz published an exploit for an out-of-bounds write vulnerability that is on the CISA Known Exploited Vulnerabilities Catalog.

Hitachi Exploit - Arslan Masood published an exploit for an improper authentication vulnerability in the Hitachi NAS.

Honeywell Exploit - BYTEHUNTER published an exploit for a command injection vulnerability in the Honeywell PM43 industrial printers.

Solar View Exploit - BYTEHUNTER published an exploit for a command injection vulnerability in the Solar View compact product.

VMware Exploit - Abdualhadi Khalifa published an exploit for a missing authentication for critical function vulnerability in the VMware Cloud Director.

 

For more information on these disclosures, including a brief description of changes in updates, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-2-5d3 - subscription required.

Review – Public ICS Disclosures – Week of 2-9-24 – Part 1

This week we have 25 vendor disclosures from Bosch (2), FortiGuard (3), Fujitsu, GE Vernova, Hitachi (6), Honeywell, HP (4), Insyde, Korenix, Palo Alto Networks (3), Philips, and Phoenix Contact.

Advisories

Bosch Advisory #1 - Bosch published an advisory that discusses seven vulnerabilities in multiple Bosch products.

Bosch Advisory #2 - Bosch published an advisory that describes five vulnerabilities in their Remote Programing Software.

FortiGuard Advisory #1 - FortiGuard published an advisory that describes an improper authentication vulnerability in their FortiOS products.

FortiGuard Advisory #2 - FortiGuard published an advisory that describes an authentication bypass through user controlled key vulnerability in their FortiOS and FortiProxy products.

FortiGuard Advisory #3 - FortiGuard published an advisory that describes two vulnerabilities in their FortiOS and FortiProxy products.

Fujitsu Advisory - Fujitsu published an advisory that discusses 11 vulnerabilities in multiple Fujitsu products.

GE Vernova Advisory - GE Vernova published an advisory that discusses four vulnerabilities (two listed in CISA’s Known Exploited Vulnerabilities catalog) in multiple products.

Hitachi Advisor #1 - Hitachi published an advisory that discusses an internal state disruption vulnerability in their Cosminexus HTTP Server.

Hitachi Advisory #2 - Hitachi published an advisory that describes an uncontrolled resource consumption vulnerability in their Cosminexus HTTP Server.

Hitachi Advisory #3 - Hitachi published an advisory that discusses an improper input validation vulnerability in their Cosminexus HTTP Server.

Hitachi Advisory #4 - Hitachi published an advisory that discusses the HTTP/2 Rapid Reset Attack (listed on CISA’s KEV catalog) vulnerability in their Cosminexus HTTP Server.

Hitachi Advisory #5 - Hitachi published an advisory that discusses an incomplete cleanup vulnerability in their Cosminexus Component Container.

Hitachi Advisory #6 - Hitachi published an advisory that describes an insertion of sensitive information into log file vulnerability in their Cosminexus Component Container.

Honeywell Advisory - Honeywell published an end-of-life notice for their e S3100 portfolio.

HP Advisory #1 - HP published an advisory that describes a privilege escalation vulnerability in multiple HP computers.

HP Advisory #2 - HP published an advisory that discusses four vulnerabilities in multiple HP computers.

Insyde Advisory - Insyde published an advisory that describes a UEFI variable modification vulnerability in their H2OFFT, H2OUVE, and H2OOAE products.

Korenix Advisory - INCIBE-CERT published an advisory that describes an exposure of sensitive information to an unauthorized actor vulnerability in the Korenix JetI/O 6550 F208 product.

Palo Alto Networks Advisory #1 - Palo Alto Networks published an advisory that describes an improper privilege management vulnerability in their PAN-OS product.

Palo Alto Networks Advisory #2 - Palo Alto Networks published an advisory that describes an improper privilege management vulnerability in their GlobalProtect App.

Palo Alto Networks Advisory #3 - Palo Alto Networks published an advisory that describes an improper privilege management vulnerability in their GlobalProtect App.

Philips Advisory - Philips published an advisory that discusses two use-after-free vulnerabilities in the Imaging Data Commons libdicom.

Phoenix Contact Advisory - Phoenix Contact published an advisory that describes 13 vulnerabilities in their CHARX SEC-3xxx charge controllers.

 

For more information on these advisories, including links to 3rd party advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-2-c78 3-16-24

 - subscription required.

Saturday, February 3, 2024

Review – Public ICS Disclosures – Week of 1-27-24 – Part 1

This week we have 24 vendor disclosures from Festo, Hitachi (6), Hitachi Energy (3), Honeywell, Pilz, and QNAP (12).

Advisories

Festo Advisory - CERT-VDE published an advisory that discusses 16 vulnerabilities in the multiple Festo products.

Hitachi Advisory #1 - Hitachi published an advisory that discusses seven undescribed vulnerabilities in their Cosminexus Developer's Kit for Java(TM) and Hitachi Developer's Kit for Java.

Hitachi Advisory #2 - Hitachi published an advisory that discusses 11 vulnerabilities in their Ops Center Analyzer.

Hitachi Advisory #3 - Hitachi published an advisory that discusses three vulnerabilities in their Ops Center Administrator product, one of which is listed in the CISA Known Exploited Vulnerabilities (KEV) catalog.

Hitachi Advisory #4 - Hitachi published an advisory that describes an incorrect default permissions vulnerability in their Hitachi Storage Plug-in for VMware vCenter.

Hitachi Advisory #5 - Hitachi published an advisory that discusses four vulnerabilities in their Command Suite products one of which is listed in CISA’s KEV catalog.

Hitachi Advisory #6 - Hitachi published an advisory that discusses 27 vulnerabilities in their Disk Array Systems products.

Hitachi Energy Advisory #1 - Hitachi Energy published an advisory that discusses an improper input validation vulnerability in their TropOS core routers.

Hitachi Energy Advisory #2 - Hitachi Energy published an advisory that discusses three vulnerabilities in their MSM Product.

Hitachi Energy Advisory #3 - Hitachi Energy published an advisory that discusses nine vulnerabilities in their AFF660/665 series products.

Honeywell Advisory - Honeywell published an advisory for two vulnerabilities in a number of their smartcard readers/cards.

Pilz Advisory - CERT-VDE published an advisory that describes two cross-site scripting vulnerabilities in the Pilz PASvisu and PMI v8xx products.

QNAP Advisory #1 - QNAP published an advisory that describes two vulnerabilities in their Photo Station product. The vulnerabilities were reported by lebr0nli.

QNAP Advisory #2 - QNAP published an advisory that describes an unchecked return value vulnerability in their QTS and QuTS hero products.

QNAP Advisory #3 - QNAP published an advisory that discusses an improper validation of integrity check value vulnerability in their QTS and QuTS hero products.

QNAP Advisory #4 - QNAP published an advisory that describes two vulnerabilities in their QTS, QuTS hero, and QuTScloud products.

QNAP Advisory #5 - QNAP published an advisory that describes an OS command injection vulnerability in their QTS, QuTS hero, and QuTScloud products.

QNAP Advisory #6 - QNAP published an advisory that describes three vulnerabilities in their QTS, QuTS hero, and QuTScloud products.

QNAP Advisory #7 - QNAP published an advisory that describes three OS command injection vulnerabilities in their QTS, QuTS hero and QuTScloud products.

QNAP Advisory #8 - QNAP published an advisory that describes an OS command injection vulnerability in their QTS, QuTS hero and QuTScloud products.

QNAP Advisory #9 - QNAP published an advisory that describes an OS command injection vulnerability in their TS, QuTS hero and QuTScloud products.

QNAP Advisory #10 - QNAP published an advisory that describes a classic buffer overflow vulnerability in their QTS, QuTS hero and QuTScloud products.

QNAP Advisory #11 - QNAP published an advisory that describes eight vulnerabilities in their QTS, QuTS hero and QuTScloud products.

QNAP Advisory #12 - QNAP published an advisory that describes an OS command injection vulnerability in their QTS, QuTS hero and QuTScloud.

 

For more information about these disclosures, including links to researcher reports, 3rd party advisories and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-1-76f - subscription required.

 
/* Use this with templates/template-twocol.html */