Showing posts with label Tigo. Show all posts
Showing posts with label Tigo. Show all posts

Tuesday, August 19, 2025

Review – 2 Advisories and 2 Updates Published –

Today CISA’s NCCIC-ICS published two control system security advisories for products from Siemens. They also updated two advisories for products from EG4 and Tigo.

Advisories

Mendix Advisory - This advisory describes an improper verification of crtyptographic signature vulnerability in the Siemens Mendix SAML Module.

NOTE: I briefly discussed this vulnerability on Sunday.

Desigo Advisory - This advisory discusses a least privilege violation vulnerability in the Siemens Desigo CC and SENTRON Powermanager products.

NOTE: I briefly discussed this vulnerability on Sunday.

Updates

EG4 Update - This update provides additional information on the EG4 Inverters advisory that was originally published on August 7th, 2025.

Tigo Update - This update provides additional information on the Cloud Connect advisory that was originally published on August 5th, 2025.

Note: I briefly discussed the announced exploit on August 9th, 2025.

 

For more information on these advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/2-advisories-and-2-updates-published-cfe - subscription required.

Saturday, August 9, 2025

Review – Public ICS Disclosures – Week of 8-2-25

We have a relatively light disclosure week. This week we have nine vendor disclosures from CODESYS (3), Dell, Draeger, Eaton, Hitachi, HPE, and Splunk. There are also seven vendor updates from HP (3), HPE, Mitsubishi, and Moxa (2). Finally, we have an exploit for products from Tigo.

Advisories

CODESYS Advisory #1 - CODESYS published an advisory that describes an incorrect default permissions vulnerability in their Control runtime systems.

CODESYS Advisory #2 - CODESYS published an advisory that describes a NULL pointer dereference vulnerability in their Control runtime system's CmpDevice component.

CODESYS Advisory #3 - CODESYS published an advisory that describes an incorrect permission assignment for critical resource vulnerability in their Control runtime system CmpOpenSSL component.

Dell Advisory - Dell published an advisory that discusses three vulnerabilities (one with publicly available exploit) in their ThinOS products.

Draeger Advisory - Draeger published an advisory that describes a missing authorization vulnerability in their  ICMHelper product.

Eaton Advisory - Eaton published an advisory that describes two vulnerabilities in their Rack PDU G4 product.

Hitachi Advisory - Hitachi published an advisory that discusses three vulnerabilities in their Cosminexus Developer's Kit.

HPE Advisory - HPE published an advisory that describes ten vulnerabilities in their Private Cloud AI.

Splunk Advisory #1 - Splunk published an advisory that discusses five vulnerabilities (two with publicly available exploits) in their AppDynamics Cluster Agent.

Splunk Advisory #2 - Splunk published an advisory that discusses 148 vulnerabilities in their On-premise Enterprise Console.

Updates

HP Update #1 - HP published an update for their Intel PROSet/Wireless WiFi advisory that was originally published on May 13th, 2025.

HP Update #2 - HP published an update for their AMD Graphics Driver advisory that was originally published on February 11th, 2025.

HP Update #3 - HP published an update for their Elan Fingerprint Sensor advisory that was originally published on April 10th, 2025.

HPE Update - HPE published an update for their SANnav Management Portal advisory that was originally published on July 8th, 2025.

Mitsubishi Update - Mitsubishi published an update for their GENESIS64 advisory that was originally published on May 15th, 2025.

Moxa Update #1 - Moxa published an update for their OnCell 3120-LTE-1 advisory that was originally published on September 4th, 2024.

Moxa Update #2 - Moxa published an update for their MGate MB3XXX advisory that was originally published on February 17th, 2022.

Exploits

Tigo Exploit - Byte Reaper published an exploit for a command injection vulnerability in the Tigo Cloud Connect Advanced products.

 

For more information on these disclosures, including links to 3rd party advisories, researcher reports, and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-8-d28 - subscription required.

Tuesday, August 5, 2025

Review – 2 Advisories Published – 8-5-25

Today CISA’s NCCIC-ICS published two control system security advisories for products from Tigo Energy and Mitsubishi Electric. I also take a belated DTRH look at the relationship between Mitsubishi and ICONICS.

Advisories

Tigo Energy Advisory - This advisory describes three vulnerabilities in the Tigo Energy Cloud Connect Advanced product.

Mitsubishi Advisory - This advisory describes a Window’s shortcut following vulnerability in the Mitsubishi GENESIS64, MC Works64, and GENESIS products.

 

For more information on these advisories, including a belated DTRH look at the relationship between Mitsubishi and ICONICS, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/2-advisories-published-8-5-25 - subscription required.

 
/* Use this with templates/template-twocol.html */