Showing posts with label Tesla. Show all posts
Showing posts with label Tesla. Show all posts

Sunday, March 1, 2026

Review – Public ICS Disclosures – Week of 2-21-26 – Part 2

For Part 2 we have seven additional vendor disclosures from Trumpf, VMware (2), Wireshark (3), and Zyxel. There are ten vendor updates from FortiGuard (3), Hitachi Energy, HP (2), Moxa, and Siemens (3). There are 14 researcher reports for products from Owl (11), and Tattile (3). Finally, we have two exploits for products from Supermicro and Tesla.

Advisories

Trumpf Advisory - CERT-VDE published an advisory that discusses a least privilege violation vulnerability in multiple Trumpf products.

VMware Advisory #1 - Broadcom published an advisory that describes four vulnerabilities in the VMware Workstation and Fusion products.

VMware Advisory #2 - Broadcom published an advisory that describes three vulnerabilities in the VMware Aria Operations product.

Wireshark Advisory #1 - Wireshark published an advisory that describes a buffer over-read vulnerability in their RF4CE Profile dissector.

Wireshark Advisory #2 - Wireshark published an advisory that describes a NULL pointer dereference vulnerability in their NTS-KE dissector.

Wireshark Advisory #3 - Wireshark published an advisory that describes an allocation of resources without limit or throttling vulnerability in their USB HID dissector.

Zyxel Advisory - Zyxel published an advisory that describes seven vulnerabilities in multiple Zyxel product lines.

Updates

FortiGuard Update #1 - FortiGuard published an update for their FortiOS advisory that was originally published on February 10th, 2026.

FortiGuard Update #2 - FortiGuard published an update for their OpenSSL advisory that was originally published on January 30th, 20276, and most recently updated on February 17th, 2026.

FortiGuard Update #3 - FortiGuard published an update for their cw_acd daemon advisory that was originally published on January 13th, 2026, and most recently updated on January 19th, 2026.

Hitachi Energy Update - Hitachi Energy published an update for their RTU500 advisory that was originally published on April 30th, 2024, and most recently updated on September 9th, 2025.

HP Update #1 - HP published an update for their Intel Xeon Processor advisory that was originally published on October 29th, 2025.

HP Update #2 - HP published an update for their AMD Embedded Processors advisory that was originally published on September 30th, 2025.

Moxa Update #1 - Moxa published an update for their Ethernet Switches advisory that was originally published on January 9th, 2026.

Moxa Update #2 - Moxa published an update for their EDS-P510 Series advisory that was originally published on November 8th, 2025.

Siemens Update #1 - Siemens published an update for their SINEC OS advisory that was originally published on August 12th, 2025, and most recently updated on February 12th, 2026.

Siemens Update #2 - Siemens published an update for their SINEC OS advisory that was originally published on August 12th, 2025, and most recently updated on February 12th, 2026.

Siemens Update #3 - Siemens published an update for their SINEC OS advisory that was originally published on January 28th, 2026.

Researcher Reports

Owl Reports - Nozomi Networks published 11 reports describing vulnerabilities in the Owl OPDS data diode solution.

Tattile Reports - Zero Science published three reports about vulnerabilities in Tattile Cameras.

Exploits

Supermicro Exploit - Indoushka published an exploit for an old (2013) improper restriction of operations within the bounds of a memory buffer vulnerability in the Supermicro Onboard IPMI X9SCL.

Tesla Exploit - Nullze published an exploit for a denial-of-service vulnerability in the Tesla S/3/X.

 

For more information on these disclosures, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-2-5e6 - subscription required.

Sunday, August 3, 2025

Review – Public ICS Disclosures – Week of 7-26-25 – Part 2

For Part 2 this week we have an additional vendor disclosure from HPE. There are also four vendor updates from Broadcom, and HP (3). We also have 35 researcher reports for vulnerabilities in products from Eclipse, Ilevia (2), MedDream (4), QNAP (26), and Tesla (2). Finally, we have two exploits for products from AK-Nord and Helmholz.

Advisories

HPE Advisory - HPE published an advisory that discusses 12 vulnerabilities in their Telco Network Function Virtual Orchestrator product.

Updates

Broadcom Update - Broadcom published an update for their GNU Glibc advisory that was originally published on July 8th, 2025.

HP Update #1 - HP published an update for their Intel 2025.1 IPU Chipset advisory that was originally published on March 10th, 2025.

HP Update #2 - HP published an update for their UEFI Firmware advisory that was originally published on February 3rd, 2022, and most recently updated on May 28th, 2025.

HP Update #3 - HP published an update for their Intel PROSet/Wireless WiFi advisory that was originally published on March 13th, 2025, and most recently updated on July 11th, 2025.

Researcher Reports

Eclipse Report - Cisco Talos published a report about a buffer overflow vulnerability in the Eclipse ThreadX FileX RAM disk driver.

Ilevia Reports - Zero Science published two reports about vulnerabilities in the Ilevia EVE X1 Server. The report includes a link to exploit code.

MedDream Reports - Cisco Talos published four reports of vulnerabilities in the MedDream PACS Premium product. The reports include proof-of-concept code.

QNAP Reports #1 - ZDI published three reports about vulnerabilities in the QNAP TS-464 Samba.

QNAP Reports #2 - ZDI published 15 reports about vulnerabilities in the QNAP QHora-322 product.

QNAP Reports #3 - ZDI published 8 reports about vulnerabilities in the QNAP TS-464 product.

Tesla Reports - ZDI published two reports about vulnerabilities in the Tesla Wall Connector product.

Exploits

AK-Nord Exploit - Marcus Krüppel published an exploit for an insecure permissions vulnerability in the AK-Nord USB-Server-LXL Firmware.

Helmholz Exploit - M. Kadlec et al published an exploit for nine vulnerabilities in the Helmholz REX100 industrial router.

 

For more information on these disclosures, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-7-782 - subscription required.

Sunday, May 4, 2025

Review – Public ICS Disclosures – Week of 4-26-25 – Part 2

For Part 2 this week we have three additional vendor disclosures from Splunk, Western Digital, and Wiesemann and Theis. There are also two vendor updates from Hitachi Energy and Palo Alto Networks. We also have nine researcher reports about vulnerabilities in products from Daikin, HP Wolf, Tesla (6), and SonicWall.

Advisories

Splunk Advisory - Splunk published an advisory that discusses 13+ vulnerabilities (six with publicly available exploits) in their User Behavior Analytics product.

Western Digital Advisory - Western Digital published an advisory that discusses 12 vulnerabilities (six with publicly available exploits) in their My Cloud devices.

Wiesemann Advisory - CERT-VDE published an advisory that describes the use of a broken or risky cryptographic algorithm vulnerability in the Wiesemann and Theis Com-Server products.

Updates

Hitachi Energy Update - Hitachi Energy published an update that provides additional information on their RTU500 series advisory that was originally published on March 25th, 2025.

Palo Alto Networks Update - Palo Alto Networks published an update for their GlobalProtect App advisory that was originally published on April 9th, 2025, and most recently updated on April 21st, 2025.

Researcher Reports

Daikin Report - Zero Science published a report that describes an insecure direct object reference vulnerability in the Daikin Security Gateway.

HP Wolf Report - SEC Consult published a report that describes a CSRF vulnerability in the HP Wolf Security Controller, as well as multiple misconfiguration issues.

Tesla Reports - ZDI published six reports about individual vulnerabilities in the Tesla Model S.

SonicWall Report - BishopFox published a report that describes a denial of service vulnerability in the SonicWall Sonic OS product.

 

For more information on these disclosures, including links to exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-4-d05 - subscription required.

Saturday, July 22, 2023

Review – Public ICS Disclosures – Week of 7-15-22

This week we have nine vendor disclosures from Aqua eSolutions, Beldon, HP (2), SEL (2), Sierra Wireless, Splunk, and Zyxel. There are two vendor updates from AMI and HPE. We also have three researcher reports about vulnerabilities in products from Tesla. Finally, we have two exploits for products from ABB and Hikvision.

Advisories

Aqua Advisory - Incibe CERT published an advisory that describes a relative path traversal vulnerability in their Aqua Drive.

Belden Advisory - Beldon published an advisory that discusses an undescribed JavaSE vulnerability in several of their Belden and Hirschmann products.

HP Advisory #1 - HP published an advisory that discusses two vulnerabilities in their Security Manager and Web Jetadmin products.

HP Advisory #2 - HP published an advisory that describes an elevation of privilege vulnerability in their LaserJet Pro print products.

SEL Advisory #1 - SEL published a new version notice for their SEL-5030 acSELerator QuickSet software that addresses seven briefly described cybersecurity issues.

SEL Advisory #2 - SEL published a new version notice for their SEL-5036 acSELerator Bay Screen Builder Software that addresses a software validation issue.

Sierra Wireless Advisory - Sierra Wireless published an advisory that briefly discusses a Cl0p ransomware attack on a Sierra Wireless corporate server.

Splunk Advisory - Splunk published an advisory that discusses two vulnerabilities in their SOAR product.

Zyxel Advisory - Zyxel published an advisory that describes seven vulnerabilities in their firewall and WLAN controllers.

Updates

AMI Update - AMI published an update for their -MegaRAC SPX advisory that was originally published on July 5th, 2023.

HPE Update - HPE published an update for their ArubaOS-CX 8000 Series Switches advisory that was originally published on February 2nd, 2022.

Researcher Reports

Tesla Reports - The Zero Day Initiative published three reports about individual vulnerabilities in the Tesla Model 3 that were discovered as part of a Pwn2Own competition.

Exploits

ABB Exploit - Paul Smith published an exploit for an exposure of sensitive information to an unauthorized actor vulnerability in the ABB FlowX product.

Hikvision Exploit - Thurein Soe published an exploit for a command injection vulnerability in the Hikvision Hybrid SAN Ds-a71024 product.

Commentary

I would like to commend Sierra Wireless on their advisory about the potential consequences of their recent Cl0p ransomware attack. Ransomware attacks are a big problem, but frequently overlooked in attacks on vendors is that information may have been discovered by the attacker that could be used to exploit product vulnerabilities in their customers. Reports like this one provide customers a heads up about potential attacks on their equipment.

 

For more details about these disclosures, including links to researcher reports and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-7-c81 - subscription required.

Saturday, September 10, 2022

Review – Public ICS Disclosures – Week of 9-3-22

This week we have twelve vendor disclosures from Aruba Networks, Helmholz (2), Hitachi, Hitachi Energy (3), HP, MB Connect (2), QNAP and Wireshark. We also have ten vendor updates from HPE (2), MB Connect, and Schneider (7). Finally, we have four researcher reports for products from mySCADA, Berghof, Honeywell, and Tesla.

Aruba Advisory - Aruba published an advisory that describes fourteen vulnerabilities in their ClearPass Policy Manager.

Helmholz Advisory #1 - CERT-VDE published an advisory that describes an observable response discrepancy vulnerability in the Helmholz myREX24 and myREX24.virtual servers.

Helmholz Advisory #2 - CERT-VDE published an advisory that discusses twenty vulnerabilities in the Helmholz myREX24 and myREX24.virtual servers.

Hitachi Advisory - Hitachi published an advisory that discusses 39 vulnerabilities in their Disk Array Systems.

Hitachi Energy Advisory #1 - Hitachi Energy published an advisory that describes five vulnerabilities in their MicroSCADA Pro/X SYS600 Products.

Hitachi Energy Advisory #2 - Hitachi Energy published an advisory that discusses two vulnerabilities in their MicroSCADA Pro/X SYS600 Products.

Hitachi Energy Advisory #3 - Hitachi Energy published an advisory that discusses a classic buffer overflow vulnerability in their AFS660/AFS665 series switches.

HP Advisory - HP published an advisory that describes a DLL hijacking vulnerability in their Support Assistant product.

MB Connect Advisory #1- MB Connect published an advisory that describes a user enumeration vulnerability in their mbCONNECT24/mymbCONNECT24 products.

MB Connect Advisory #2 - MB Connect published an advisory that describes an information disclosure vulnerability in their mbCONNECT24/mymbCONNECT24 products.

Wireshark Advisory - Wireshark published an advisory that describes an infinite loop vulnerability in their F5 Ethernet Trailer dissector.

QNAP Advisory - QNAP published an advisory that describes an externally controlled reference to a resource in another sphere vulnerability in their NAS running Photo Station.

HPE Update #1 - HPE published an update for their HPE Superdome Flex advisory that was originally published on June 7th, 2022 and most recently updated on July 7th, 2022.

HPE Update #2 - HPE published an update for their Integrated Lights-Out advisory that was originally published on July 28th, 2022 and most recently updated on August 17th, 2022.

MB Connect Update #1 - CERT-VDE published an update for their mbCONNECT24 advisory that was originally published on February 16th, 2021.

MB Connect Update #2 - CERT-VDE published an update for their mbCONNECT24 advisory that was originally published on August 2nd, 2022.

Schneider Update #1 - Schneider published an update for their FTP Server advisory that was originally published on March 22nd, 2018 and most recently updated on August 9th, 2022.

Schneider Update #2 - Schneider published an update for their Modicon Controllers advisory that was originally published on September 26th, 2019 and most recently updated on August 9th, 2022.

Schneider Update #3 - Schneider published an update for their EcoStruxure Control Expert advisory that was originally published on July 13th, 2021 and most recently updated on August 9th, 2022.

Schneider Update #4 - Schneider published an update for their EcoStruxure Control Expert advisory that was originally published on August 9th, 2022.

Schneider Update #5 - Schneider published an update for their Modicon PAC Controllers advisory that was originally published on August 9th, 2022.

Schneider Update #6 - Schneider published an update for their Modicon PAC Controllers advisory that was originally published on August 9th, 2022.

Schneider Update #7 - Schneider published an update for their Modicon PAC Controllers advisory that originally published on August 10th, 2021 and most recently updated on August 9th, 2022.

MySCADA Report - AWESEC published a report with proof-of-concept code on a command injection vulnerability in the mySCADA myPRO HMI/SCADA systems.

Berghof Report - OTORIO published a report discussing a recent hack of Berghoff PLC’s by “a hacktivist group ‘GhostSec’”.

Honeywell Report - SCADAfence published a report describing four vulnerabilities in the Honeywell Alerton Ascent Control Module.

Tesla Report - The Zero Day Initiative published a report about an arbitrary code execution vulnerability in affected Tesla vehicles.

 

For more details about these disclosures, including links to researcher reports and 3rd party advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-9-5a0 - subscription required.

Saturday, May 21, 2022

Review – Public ICS Disclosures – Week of 5-14-22

This week we have sixteen vendor disclosures from Aruba, Fujitsu, HPE (6), Moxa, OPC Foundation, Pepperl+Fuchs, Philips, Sick, Siemens, Tanzu (2). Then we have two vendor updates from Aruba and Johnson Controls. Finally, we have four researcher reports for products from Schneider, Spectrum Brands, Tesla, and Galleon.

Aruba Advisory - Aruba published an advisory that discusses five vulnerabilities in multiple Aruba products.

Fujitsu Advisory - JP-CERT published an advisory that discusses two vulnerabilities in the Fujitsu IPCOM products.

HPE Advisory #1 - HPE published an advisory that discusses two vulnerabilities in their Edgeline Servers.

HPE Advisory #2 - HPE published an advisory that discusses an information disclosure vulnerability in their Moonshot/Edgeline Servers.

HPE Advisory #3 - HPE published an advisory that discusses an information disclosure vulnerability in their Moonshot/Edgeline Servers.

HPE Advisory #4 - HPE published an advisory that discusses six vulnerabilities in their HP-UX OpenSSL products.

HPE Advisory #5 - HPE published an advisory that describes three vulnerabilities in their OneView product.

HPE Advisory #6 - HPE published an advisory that discusses 14 vulnerabilities in their ProLiant Gen10 and Gen10 Plus Servers.

Moxa Advisory - Moxa published an advisory that discusses a heap-based buffer overflow vulnerability in the Linux IPsec ESP transformation code.

OPC Advisory - The OPC Foundation published an advisory that describes an uncontrolled resource exhaustion vulnerability in their UA Legacy Java Stack.

NOTE: I believe that this vulnerability was one of the ones reported in the Pwn2Own Miami 2022 competition that I briefly mentioned last week.

Pepperl+Fuchs Advisory - CERT-VDE published an advisory that discusses six Bluetooth vulnerabilities in the Pepperl+Fuchs RSM-EX01B product family.

Philips Advisory - Philips published an advisory that discusses the CISA Emergency Directive 22-03 for the mitigation of VMware vulnerabilities.

Sick Advisory - Sick published an advisory that describes a deserialization of untrusted data vulnerability in their Flexi Soft Designer & Safety Designer.

Siemens Report - Siemens published a report discussing a published exploit of their S7-1200 4.5 that was published back in March.

Tanzu Advisory #1 - Tanzu published an advisory that describes an integer overflow vulnerability in their Spring Security product.

Tanzu Advisory #2 - Tanzu published an advisory that describes an authorization bypass vulnerability in their Spring Security product.

Aruba Update - Aruba published an update for their TLStorm 2.0 advisory that was originally published on May 3rd, 2022.

Johnson Controls Update - Johnson Controls published an update for their SpringShell advisory that was that was originally published on April 19th, 2022 and most recently updated on April 29th, 2022.

Schneider Report #1 - Kaspersky published a report that describes an authentication bypass by spoofing vulnerability in the Schneider Electric Modicon M340/M580 controllers.

Schneider Report #2 - Kaspersky published a report that describes an information leak from project files vulnerability in the Schneider Electric EcoStruxure Control Expert / Process Expert, and SCADAPack RemoteConnect products.

Spectrum Brands Report - NCC Group published a report describing a BLE relay vulnerability in the Kwikset/Weiser Kevo smart locks.

Tesla Report - NCC Group published a report describing a BLE relay vulnerability in the Tesla automobile.

Galleon Report - Pen Test Partners published a report describing a command injection vulnerability in the Galleon Systems’ GPS NTP time server.


For more details on these disclosures, including links to researcher reports and third-party advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-5-581 - subscription required.


 
/* Use this with templates/template-twocol.html */