Showing posts with label TEM. Show all posts
Showing posts with label TEM. Show all posts

Saturday, October 28, 2023

Review – Public ICS Disclosures – Week of 10-21-23

This week we have eight vendor disclosures from Aruba Networks, Bosch, Festo, Genetec, HP, Omron, Sick, and VMware. There are eight vendor updates from BD (2), Cisco (3), HP, and HPE (2). There are two researcher reports for vulnerabilities in products from TEM. Finally, we have two exploits for products from Splunk and VMware.

Advisories

Aruba Advisory - Aruba published an advisory that describes five vulnerabilities in their ClearPass Policy Manager.

Bosch Advisory - Bosch published an advisory that discusses an authentication bypass by capture replay vulnerability in their Rexroth SLC-0-GPNT00300 product.

Festo Advisory - CERT-VDE published an advisory that discusses an improper input validation vulnerability in the Festo TP 260 and MES PC products.

Genetec Advisory - Genetec published an advisory that discusses a command injection vulnerability in their Genetec A1610 and A1210 network door controllers.

HPE Advisory - HPE published an advisory that describes a remote code execution vulnerability in their OneView product.

Omron Advisory - Omron published an advisory that describes a restriction of XML external entity reference vulnerability in their CX Designer product.

Sick Advisory - Sick published an advisory that describes an authentication bypass by capture-replay vulnerability in their Flexi Soft Gateways.

VMware Advisory #1 - VMware published an advisory that describes two vulnerabilities in their vCenter Server.

VMware Advisory #2 - VMware published an advisory that describes two vulnerabilities in their Tools product.

Updates

BD Update #1 - BD published an update for their Busy Box advisory.

BD Update #2 - BD published an update for their Linux Kernel Vulnerability within Wi-Fi Module in Alaris PCU advisory.

Cisco Update #1 - Cisco published an update for their IOS XE Software Web UI Command Injection advisory that was originally published on March 24th, 2021.

Cisco Update #2 - Cisco published an update for their HTTP/2 Rapid Reset Attack advisory that was originally published on October 16th, 2023.

Cisco Update #3 - Cisco published an update for their IOS XE Software Web UI Feature Attack advisory that was originally published on October 16th, 2023.

HP Update - HP published an update for their NVIDIA GPU Display Driver that was originally published on September 11th, 2023.

HPE Update #1 - HPE published an update for their Aruba AirWave Management Platform advisory that was originally published on October 17th, 2023.

HPE Update #2 - HPE published an update for their NonStop advisory that was originally published on July 18th, 2022 and most recently updated on March 30th, 2023.

Researcher Reports

TEM Reports - Zero Science published two reports of individual vulnerabilities in the TEM Opera Plus FM Family Transmitter.

Exploits

Splunk Exploit - Heyder Andrade published a Metasploit module for a privilege escalation vulnerability in Splunk.

VMware Exploit - SinSinology published an exploit for a use of broken or risky cryptographic algorithm vulnerability in the VMware Aria Operations for Networks program.

 

For more details about these disclosures, including links to 3rd party advisories and researcher reports as well as brief update summaries, see my article at CFSN Detailed analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-10-19b - subscription required. 

Saturday, May 27, 2023

Review – Public ICS Disclosures – Week of 5-20-23

This week we have 62 vendor disclosures for products from ABB, Aruba Networks, Bosch (3), Eaton, HPE (2), Meinberg, Tanzu (42), VMware, Western Digital, and Wireshark (9). There are two researcher reports for products from Broadcom and Mitsubishi. Finally, we have two exploits for products from TEM and PnPSCADA.

Advisories

ABB Advisory - ABB published an advisory that describes an insertion of sensitive information into log files vulnerability in their QCS and Platform Engineering Tools products.

Aruba Advisory - Aruba published an advisory that describes ten vulnerabilities in their EdgeConnect Enterprise product.

Bosch Advisory #1 - Bosch published an advisory that describes an exposure of sensitive information to an unauthorized actor vulnerability in their Video Management System (BVMS).

Bosch Advisory #2 - Bosch published an advisory that describes a misinterpretation of input vulnerability in their AMC2-4WCF and AMC2-2WCF access control products.

Bosch Advisory #3 - Bosch published an advisory that discusses a remote code execution vulnerability in their Bosch Video Management System (BVMS), the Bosch Access Management System (AMS), and the Bosch Building Integration System (BIS) products.

Eaton Advisory - Eaton published an advisory that discusses 16 vulnerabilities in multiple products.

HPE Advisory #1 - HPE published an advisory that discusses two vulnerabilities in their SimpliVity Servers.

HPE Advisory #2 - HPE published an advisory that discusses a double free vulnerability in their IceWall products.

Meinberg Advisory - Meinberg published an advisory that discusses 16 vulnerabilities in their Lantime product.

TANZU Advisories - Tanzu published 42 advisories, each discussing individual third-party vulnerabilities in various Tanzu products.

VMware Advisory - VMware has published an advisory that describes a cross-site scripting vulnerability in their NSX-T product.

Western Digital Advisory - Western Digital has published an advisory that describes a server-side request forgery vulnerability in their My Cloud Home, My Cloud Home Duo and SanDisk ibi firmware.

Wireshark Advisories - Wireshark published 9 advisories, each describing individual vulnerabilities in various components of their product.

Reports

Broadcom Report - BugProve published a report that describes an out-of-bounds write vulnerability in the Broadcom BCM47xx SDK.

Mitsubishi Report - Talos Intelligence has published a report describing a memory corruption vulnerability in the Mitsubishi MELSEC iQ-F FX5U.

Exploits

TEM Exploit - Mr. Empy published an exploit for an improper resource shutdown or release vulnerability in the TEM FLEX-1085 alarm central.

PnPSCADA Exploit - Momen Eldawakhly published an exploit for an SQL injection vulnerability in the SDG PnPSCADA product.

 

For more details about these disclosures, including links to 3rd party advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-5-58b - subscription required.

 
/* Use this with templates/template-twocol.html */