Showing posts with label Planet. Show all posts
Showing posts with label Planet. Show all posts

Sunday, October 12, 2025

Review – Public ICS Disclosures – Week of 10-4-25 – Part 2

For Part 2 we have five additional vendor disclosures from Fuji Electric, OpenPLC, Philips (2) and Wireshark. There is a vendor update from HPE. We have six researcher reports for vulnerabilities in products from OpenPLC (2), and Planet (4). Finally, we have three exploits for products from FortiGuard (2) and MotionEye.

Advisories

Fuji Advisory - JP-CERT published an advisory that describes nine vulnerabilities in the Fuji V-SFT screen configuration software.

OpenPLC Advisory - OpenPLC published an advisory that describes an improper input validation vulnerability.

Philips Advisory #1 - Philips published an advisory that discusses the Oracle server side request forgery vulnerability.

Philips Advisory #2 - Philips published an advisory that discusses three Cisco vulnerabilities.

Wireshark Advisory - Wireshark published an advisory that describes an infinite loop vulnerability in their MONGO dissector.

Updates

HPE Update - HPE published an update for their Aruba EdgeConnect SD-WAN Gateways advisory that was originally published on September 16th, 2025.

Researcher Reports

OpenPLC Report - CISCO Talos published a report that describes a missing release of file descriptor or handle after the effective lifetime vulnerability in the OpenPLC v3.

Planet Reports - Cisco Talos published four reports for nine vulnerabilities in the Planet WGR-500 industrial router.

Exploits

FortiGuard Exploit #1 - Milad Karimi published an exploit for an SQL injection vulnerability {which is listed in CISA’s Known Exploited Vulnerability (KEV) catalog} in the FortiWeb Fabric Connector. The vulnerability was previously disclosed by FortiGuard.

FortiGuard Exploit #2 - Kityzed2003 published an exploit for a an SQL injection vulnerability (which is listed in CISA’s KEV catalog) in the FortiWeb product.

MotionEye Exploit - Maksim Rogov published a Metasploit module for an improper encoding or escaping from object vulnerability in the MotionEye.

 

For more information on these disclosures, including links to 3rd party advisories, researcher reports, and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-10-fa2 - subscription required.

Thursday, April 24, 2025

Review – 6 Advisories and 1 Update Published – 4-24-25

Today CISA’s NCCIC-ICS published six control system security advisories for products from Planet Technology, Johnson Controls, Nice, Vestel, ALBEDO Telecom, and Schneider Electric. They also updated an advisory for products from Fuji Electric.

Advisories

Planet Advisory - This advisory describes five vulnerabilities in multiple Planet network products.

Johnson Controls Advisory - This advisory describes a stack-based buffer overflow vulnerability in the Johnson Controls ICU tool.

Nice Advisory - This advisory describes an OS command injection vulnerability (with publicly available exploit) in the Nice Linear eMerge e3-Series access control platform.

Vestel Advisory - This advisory describes an exposure of sensitive information to an unauthorized control sphere vulnerability in the Vestel AC Charger EVC04.

ALBEDO Advisory - This advisory describes an insufficient session expiration vulnerability in the ALBEDO Net.Time - PTP/NTP clock.

Schneider Advisory - This advisory describes 22 vulnerabilities (16 with publicly available exploits) in the Schneider Modicon Controllers.

Update

Fuji Update - This update provides additional information on the Monitouch V-SFT advisory that was originally published on December 3rd, 2024.

 

For more information on these advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/6-advisories-and-1-update-published-ad4 - subscription required.

Saturday, March 23, 2024

Review – Public ICS Disclosures – Week of 3-16-24

This week we have eight vendor disclosures from Belden, Bosch, Buffalo Tech, Honeywell, HP, Planet Technology, and Rockwell (2). There are five vendor updates from Eaton, HP (2), Palo Alto Networks, and QNAP. We have two researcher reports for vulnerabilities in products from FortiGuard and Unitronics. Finally, we have four exploits for products from APC and TELSAT (3).

Advisories

Belden Advisory - Belden published an advisory that discusses five vulnerabilities in multiple Hirschmann products.

Bosch Advisory - Bosch published an advisory that describes a command injection vulnerability in their Network Synchronizer.

Buffalo Advisory - JP-CERT published an advisory that describes an insufficient data validation vulnerability in the Buffalo LinkStation 200 series NAS.

Honeywell Advisory - Honeywell published an advisory that describes a cross-site scripting vulnerability in their MPA2 Web Application.

HP Advisory - HP published an advisory that describes a denial of service vulnerability in their OfficeJet Pro printers.

Planet Advisory - Incibe-CERT published an advisory that describes three vulnerabilities in the Planet IGS-4215-16T2S industrial ethernet switch.

Rockwell Advisory #1 - Rockwell published an advisory that describes an improper security protection for remote restart action vulnerability in their FactoryTalk® View ME on PanelView.

Rockwell Advisory #2 - Rockwell published an advisory that describes three vulnerabilities in their PowerFlex® 527 product.

UPDATES

Eaton Update - Eaton published an update for their User Management System advisory that was originally published on November 24th, 2023 and most recently updated on December 20th, 2023.

HP Update #1 - HP published an update for their Intel 2023.4 IPU advisory that was originally published on December 11th, 2023 and most recently updated January 9th, 2024.

HP Update #2 - HP published an update for their AMD Client UEFI firmware advisory that was originally published on December 7th, 2023 and most recently updated on January 5th, 2024.

Researcher Reports

FortiGuard Report - Horizon3 published a report describing an SQL injection vulnerability in the FortiGuard FortiClient EMS product.

Unitronics Report - Claroty published a report describing eight vulnerabilities in the Unitronics UniStream integrated PLC/HMI products.

Exploits

APC Exploit - Victor Garcia published an exploit for a path traversal vulnerability in the APC UPS Network Management Card.

TELSAT Exploits - LIQUIDWORM published exploits for three vulnerabilities in the TELSAT marKoni FM Transmitter.

 

For more information on these disclosures, including links to 3rd party advisories and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-3-051 - subscription required.

 
/* Use this with templates/template-twocol.html */