Showing posts with label Yokogawa. Show all posts
Showing posts with label Yokogawa. Show all posts

Thursday, June 25, 2026

Review – 9 Advisories and 1 Update Published – 6-25-26

Today CISA’s NCCIC-ICS published 7 control system security advisories for products from Schneider Electric, Delta Electronics, H.View, Daktronics, Horner Automation, EVoke Systems, and Yokogawa. They also published two medical device security advisories for products from OHIF and pydicom. They also updated an advisory for AzeoTech. 

Advisories  

Schneider Advisory - This advisory describes three vulnerabilities in the Schneider PowerLogic P7. 

Delta Advisory - This advisory describes a deserialization of untrusted data vulnerability in the Delta DTM Soft product. 

H.VIEW Advisory - This advisory describes two vulnerabilities in the H. VIEW HV-500S6 IP Camera. 

Daktronics Advisory - This advisory describes three vulnerabilities in the Daktronics Controller firmware. 

Horner Advisory - This advisory describes an out-of-bounds read vulnerability in the Horner Cscape product. 

EVoke Advisory - This advisory describes four vulnerabilities in the EVoke Charging Station Management System. 

Yokogawa Advisory - This advisory describes a cleartext transmission of sensitive information vulnerability in the Yokogawa FAST/TOOLS and CI Server. 

OHIF Advisory - This advisory describes a server-side request forgery vulnerability in the Open Health Imaging Foundation (OHIF) Viewers DICOM. 

Pydicom Advisory - This advisory describes a path traversal vulnerability in the pydicom pynetdicom Library. 

Updates  

AzeoTech Advisory - This update provides additional information on the DAQFactory advisory that was originally published on June 18th, 2026. 


For more information on these advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/9-advisories-and-1-update-published - subscription required. 

Sunday, March 29, 2026

Review – Public ICS Disclosures – Week of 3-21-26 – Part 2

For Part 2 we have nine additional vendor disclosures from Siemens, Supermicro, TP-Link (4), WatchGuard (2), and Yokogawa. Finally, we have a vendor update from FortiGuard.

Advisories

Siemens Advisory - Siemens published an advisory that describes two vulnerabilities in their SICAM 8 products.

Supermicro Advisory - Supermicro published an advisory that discusses nine vulnerabilities in multiple Supermicro product lines.

TP-Link Advisory #1 - TP-Link published an advisory that describes a clear-text storage of sensitive information vulnerability in their TL-WR850N wireless router.

TP-Link Advisory #2 - TP-Link published an advisory that describes an out-of-bounds read vulnerability in their TL-WR841N wireless router.

TP-Link Advisory #3 - TP-Link published an advisory that describes an improper input validation vulnerability in their TD-W8961N wireless modem-router.

TP-Link Advisory #4 - TP-Link published an advisory that describes four vulnerabilities in their Archer NX series gigabit wireless routers.

WatchGuard Advisory #1 - WatchGuard published an advisory that describes a deserialization of untrusted data vulnerability in their Fireware OS products.

WatchGuard Advisory #2 - WatchGuard published an advisory that describes a cross-site request forgery vulnerability in their Fireware OS WebUI.

Yokogawa Advisory - Yokogawa published an advisory that describes a use of hard-coded password vulnerability in their CENTUM VP products.

Updates

FortiGuard Update - FortiGuard published an update for their vmimages update feature advisory that was originally published on March 10th, 2026.

 

For more information on these disclosures, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-3-a57 - subscription required.

Thursday, February 26, 2026

10 Advisories and 3 Updates Published – 2-26-26

Today CISA’s NCCIC-ICS published 10 control system security advisories for products from Copeland, Yokogawa, Mobility46, EV Energy, SWITCH EV, Chargemap, EV2GO, CloudCharge, Pelco, and Johnson Controls. They also published updates for advisories from Honeywell, Schneider Electric, and Hitachi Energy.

Advisories

Copeland Advisory - This advisory describes 23 vulnerabilities in the Copeland XWEB and XWEP Pro plant management software.

Yokogawa Advisory - This advisory describes six vulnerabilities in the Yokogaw Vnet/IP Interface Package used in their CENTUM VP R6 and R7 products.

Mobility46 Advisory - This advisory describes four vulnerabilities in the Mobility46 mobility46.se digital parking management and EV charging solution.

EV Energy Advisory - This advisory describes four vulnerabilities in the EV Energy ev.energy EV charging management solution.

SWITCH EV Advisory - This advisory describes four vulnerabilities in the SWITCH EV SwitchEnergy.com multiple EV charging systems management.

Chargemap Advisory - This advisory describes four vulnerabilities in the Chargemap Chargemap.com EV fleet charging management.

EV2GO Advisory - This advisory describes four vulnerabilities in the EV2GO ev2go.io charging infrastructure management.

CloudCharge Advisory - This advisory describes four vulnerabilities in the CloudCharge cloudcharge.se charging facility management.

Pelco Advisory - This advisory describes an authentication bypass using an alternate path or channel vulnerability in the Pelco Sarix Pro 3 Series IP Cameras.

Johnson Controls Advisory - This advisory describes six vulnerabilities in the Johnson Controls Frick Controls Quantum HD compressor control panel.

Updates

Honeywell Update - This update provides additional information on the HIB2PI and HDZ Series CCTV Cameras advisory that was originally published on February 17th, 2026.

Schneider Update - This update provides additional information on the EcoStruxure Power Operation advisory that was originally published on July 22nd, 2025.

NOTE: I briefly discussed this new information on February 15th, 2026.

Hitachi Energy Update - This update provides additional information on the Relion 670/650/SAM600-IO Series advisory that was originally published on May 13th, 2025, and most recently updated on June 5th, 2025.

NOTE: I briefly mentioned the Hitachi Energy update on February 1st, 2026.

 

For more information on these advisories, including a DTRH look at EV charger cybersecurity research, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/10-advisories-and-3-updates-published-7f5 - subscription required.

Sunday, February 15, 2026

Review – Public ICS Disclosures – Week of 2-7-26 – Part 2

 For Part 2 we have five additional vendor disclosures from Arista, HPE, Supermicro, WAGO, and Yokogawa. There are ten vendor updates from Broadcom (3), CODESYS (2), HP, HPE, and Schneider (3). We also have three researcher reports for products from Sante, Linksys, and Solax. Finally, we have three exploits for products from FortiGuard, Palo Alto Networks, and SolarWinds.

Advisories

Arista Advisory - Arista published an advisory that describes six vulnerabilities in their Next Generation Firewall.

HPE Advisory - HPE published an advisory that discusses an improper handling of values vulnerability in their ProLiant DL/ML/XD, Synergy, Edgeline, MicroServer.

Supermicro Advisory - Supermicro published an advisory that discusses 11 vulnerabilities in multiple Supermicro products.

WAGO Advisory - CERT-VDE published an advisory that describes four vulnerabilities in the WAGO Industrial-Managed-Switch 0852-XXXX products.

Yokogawa Advisory - Yokogawa published an advisory that describes six vulnerabilities in their Vnet/IP Interface Package.

Updates

Broadcom Update #1 - Broadcom published an update for their Brocade Fabric OS advisory that was originally published on August 1st, 2023.

Broadcom Update #2 - Broadcom published an update for their Brocade Fabric OS advisory that was originally published on May 17th, 2017.

Broadcom Update #3 - Broadcom published an update for their rsynd advisory that was originally published on September 13, 2022.

CODESYS Update #1 - CODESYS published an update for their CODESYS Control advisory that was originally published on December 1st, 2025.

CODESYS Update #2 - CODESYS published an update for their CODESYS Control advisory that was originally published on December 1st, 2025.

HP Update - HP published an update for their LaserJet advisory that was originally published on November 13th, 2025, and most recently updated on December 10th, 2025.

HPE Update - HPE published an update for their Aruba Networking EdgeConnect advisory that was originally published on January 14th, 2026.

Schneider Update #1 - Schneider published an update for their EcoStruxure Power Operation advisory that was originally published on July 8th, 2025.

Schneider Update #2 - Schneider published an update for their EcoStruxure Foxboro DCS advisory that was originally published on December 9th, 2025.

Schneider Update #3 - Schneider published an update for their Uni-Telway Driver advisory that was originally published on February 11th, 2025, and most recently updated on January 13th, 2026.

Researcher Reports

Linksys Report - SySS Tech published a report that describes six vulnerabilities (with proof-of-concept code) in the Linksys MR9600 and MX4200 routers.

Sante Report - The Zero Day Initiative published a report that describes a buffer overflow vulnerability in the Sante DICOM Viewer Pro.

Solax Report - SEC Consult published a report that describes three vulnerabilities (with proof-of-concept code) in the Solax Power Pocket WiFi models.

Exploits

FortiGuard Exploit - Peter Gabaldon published an exploit for an exposure of sensitive information to an unauthorized actor vulnerability in the FortiGuard FortiGate product.

Palo Alto Networks Exploit - Indoushka published an exploit for four vulnerabilities in the Palo Alto Networks PAN-OS products.

 

For more information about these disclosures, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-2-c98 - subscription required.

Tuesday, February 10, 2026

Review – 5 Advisories Published – 2-10-26

Today CISA’s NCCIC-ICS published four control system security advisory for products from AVEVA (2), ZLAN Information Technology, and Yokogawa. They also published a medical device security advisory for products from ZOLL.

 

Advisories

 

AVEVA Advisory #1 - This advisory describes an insertion of sensitive information into a log file vulnerability in the AVEVA PI to CONNECT Agent.

AVEVA Advisory #2 - This advisory describes an uncaught exception vulnerability in the AVEVA PI Data Archive.

ZLAN Advisory - This advisory describes two missing authentication for critical function vulnerabilities in the ZLAN ZLAN5143D.

Yokogawa Advisory - This advisory describes 14 vulnerabilities in the Yokogawa FAST/TOOLS product.

ZOLL Advisory - This advisory describes an insertion of sensitive information into externally-accessible file or directory vulnerability in the ZOLL ePCR IOS Mobile Application.

 

For more information on these advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/5-advisories-published-2-10-26 - subscription required.

Thursday, April 17, 2025

Review – 4 Advisories and 2 Updates Published – 4-17-25

Today CISA’s NCCIC-ICS published four control system security advisories for products from Yokogawa and Schneider (3). They also updated two previously published Schneider advisories.

Advisories

Yokogawa Advisory - This advisory describes a missing authentication for critical function vulnerability in the Yokogawa recorder products.

Schneider Advisory #1 - This advisory describes two vulnerabilities in the Schneider ConneXium Network Manager.

Schneider Advisory #2 - This advisory describes six vulnerabilities in the Schneider Electric Sage Series RTU’s.

Schneider Advisory #3 - This advisory describes three vulnerabilities in the Schneider Trio Q Licensed Data Radios.

Updates

Schneider Update #1 - This update provides additional information on the Modicon M580 and Quantum Controllers advisory that was originally published on February 27th, 2025.

Schneider Update #2 - This update provides additional information on the M340, MC80, and Momentum Unity M1E advisory that was originally published on November 21st, 2024.

 

For more information on these advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/4-advisories-and-2-updates-published-e1d - subscription required.

Sunday, March 16, 2025

Review – Public ICS Disclosures – Week of 3-8-25 – Part 2

For Part 2 we have three additional vendor disclosures from SEL, Sick, and Zyxel. There are also 21 vendor updates for products from Broadcom, HP, HPE, Schneider (2), and Siemens (16). Finally, we have six exploits for vulnerabilities in products from ABB (2), Foundstone, GE, WinTr, and Yokogawa.

Advisories

SEL Advisory - SEL published an update notice for their SEL-5032 acSELerator Architect Software that included a cybersecurity enhancement.

Sick Advisory - Sick published an advisory that describes three vulnerabilities in their SICK DL100-2xxxxxxx.

Zyxel Advisory - Zyxel published an advisory that describes three OS command injection vulnerabilities in multiple Zyxel product lines.

Updates

Broadcom Update - Broadcom published an update for their Brocade ASCG Vulnerability advisory that was originally published on January 7th, 2025, and most recently updated on February 27th, 2025.

HP Update - HP published an update for their HP LaserJet Pro advisory that was originally published on February 14th, 2025.

HPE Update - HPE published an update for their Aruba Networking Access Points advisory that was originally published on August 3rd, 2024, and most recently updated on August 15th, 2024.

Schneider Update #1 - Schneider published an update for their Modicon M241 advisory that was originally published on December 10th, 2024.

Schneider Update #2 - Schneider published an update for their EcoStruxure Power Monitoring Expert advisory that was originally published on October 8th, 2024.

Siemens Update #1 - Siemens published an update for their User Management Component advisory that was originally published on December 16th, 2024.

Siemens Update #2 - Siemens published an update for their n SIMATIC S7-1500 advisory that was originally published on October 8th, 2024, and most recently updated on January 14th, 2025.

Siemens Update #3 - Siemens published an update for their Fortigate NGFW advisory that was originally published on March 12th, 2024, and most recently updated on February 11th, 2025.

Siemens Update #4 - Siemens published an update for their Fortigate NGFW advisory that was originally published on February 11th, 2025.

Siemens Update #5 - Siemens published an update for their SIPROTEC 5 advisory that was originally published on February 11th, 2025.

Siemens Update #6 - Siemens published an update for their Radius Protocol advisory that was originally published on July 9th, 2024, and most recently updated on January 14th, 2025.

Siemens Update #7 - Siemens published an update for their Radius Protocol advisory that was originally published on July 9th, 2024, and most recently updated on January 14th, 2025.

Siemens Update #8 - Siemens published an update for their SegmentSmack advisory that was originally published on April 14th, 2020, and most recently updated on January 14th, 2025.

Siemens Update #9 - Siemens published an update for their DHCP Client advisory that was originally published on November 12th, 2019, and most recently updated on February 13th, 2024.

Siemens Update #10 - Siemens published an update for their GNU/Linux subsystem advisory that was originally published on December 12th, 2022, and most recently updated February 11th, 2025.

Siemens Update #11 - Siemens published an update for their GNU/Linux subsystem advisory that was originally published on April 9th, 2024, and most recently updated on February 11th, 2025.

Siemens Update #12 - Siemens published an update for their Nucleus RTOS advisory that was originally published on April 13th, 2021, and most recently updated on February 13th, 2023.

Siemens Update #13 - Siemens published an update for their SIMATIC Products Webserver advisory that was originally published on February 11th, 2025.

Siemens Update #14 - Siemens published an update for their SIPROTEC 5 Webserver advisory that was originally published on January 14th, 2025, and most recently updated on February 11th, 2025.

Siemens Update #15 - Siemens published an update for their SIMATIC S7-1500 CPUs Webserver advisory that was originally published on October 8th, 2024, and most recently updated on January 14th, 2025.

Siemens Update #16 - Siemens published an update for their User Management Component advisory that was originally published on September 10th, 2024, and most updated on January 14th, 2025.

Exploits

ABB Exploit #1 - Indoushka published an exploit for two vulnerabilities in the ABB AC500.

ABB Exploit #2 - Indoushka published an exploit for a shell upload vulnerability in the ABB Cylon Aspect.

Foundstone Exploit - Ahmet Ümit Bayram published an exploit for a buffer overflow vulnerability in the Foundstone SuperScan product.

GE Proficy Exploit - Indoushka published an exploit for a directory traversal vulnerability in the GE Proficy Cimplicity 7 product.

VMware Exploit - Indoushka published an exploit for an ASP.NET misconfiguration: use of identity impersonation vulnerability in the VMware vCenter Server product.

WinTR Exploit - Ahmet Ümit Bayram published an exploit for a command injection vulnerability in the WinTR Scada product.

Yokogawa Exploit - Indoushka published an exploit for an improper restriction of operation within the bounds of a memory buffer vulnerability in the Yokogawa CENTUM CS 3000.

 

For more information on these disclosures, including links to 3rd party advisories, researcher reports, and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-3-fdf - subscription required.

Tuesday, September 17, 2024

Review – 3 Advisories Published – 9-17-24

Today, CISA’s NCCIC-ICS published three control system security advisories for products from Yokogawa, Millbeck Communications, and Siemens.

Advisories

Yokogawa Advisory - This advisory describes an unchecked return value vulnerability in the Yokogawa PC2CKM dual-redundant platform computer.

Millbeck Advisory - This advisory describes two vulnerabilities in the Millbeck Proroute H685t-w 4G router.

Siemens Advisory - This advisory describes an uncontrolled resource consumption vulnerability in the Siemens SIMATIC S7-200 SMART devices.

 

For more information on these advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/3-advisories-published-9-17-24 - subscription required.

Thursday, June 27, 2024

Review – 7 Advisories Published – 6-27-24

Today, CISA’s NCCIC-ICS published seven control system security advisories for products from Johnson Control (4), Yokogawa, SDG Technologies and TELSAT.

Advisories

Johnson Controls Advisory #1 - This advisory describes a storing password in recoverable format vulnerability in the Johnson Control Illustra Essentials Gen 4 IP cameras.

Johnson Controls Advisory #2 - This advisory describes an insertion of sensitive information into a log file vulnerability in the Johnson Control Illustra Essentials Gen 4 IP cameras.

Johnson Controls Advisory #3 - This advisory describes a storing password in recoverable format vulnerability in the Johnson Control Illustra Essentials Gen 4 IP cameras.

Johnson Controls Advisory #4 - This advisory describes an improper input validation vulnerability in the Johnson Control Illustra Essentials Gen 4 IP cameras.

Yokogawa Advisory - This advisory describes two vulnerabilities in the Yokogawa FAST/TOOLS and CI Server products. The vulnerabilities are self-reported.

SDG Advisory - This advisory describes a missing authorization vulnerability in the SDG PnPSCADA web-based SCADA HMI.

TELSAT Advisory - This advisory describes four vulnerabilities (three with known exploits) in the TELSAT marKoni FM Transmitters.

 

For more information on these advisories, including links to researcher reports and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/7-advisories-published-6-27-24 - subscription required.

Thursday, June 20, 2024

Review – 3 Advisories Published – 6-20-24

Today, CISA’s NCCIC-ICS published three control system security advisories for products from Westermo, CAREL, and Yokogawa.

Advisories

Westermo Advisory - This advisory describes three vulnerabilities in the Westermo L210-F2G industrial ethernet switches.

CAREL Advisory - This advisory describes a path traversal vulnerability (with known exploit) in the CAREL Boss-Mini, a local supervisor solution.

Yokogawa Advisory - This advisory describes an improper access control vulnerability in the Yokogawa CENTUM distributed control system.

 

For more information about these advisories, including links to exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/3-advisories-published-6-20-24 - subscription required.

Thursday, November 30, 2023

Review – 4 Advisories Published – 11-30-23

Today, CISA’s NCCIC-ICS published four control system security advisories for products from Mitsubishi Electric, PTC, Yokogawa, and Delta Electronics.

Advisories

Mitsubishi Advisory - This advisory describes an external control of file name or path vulnerability in multiple Mitsubishi FA Engineering Software products.

PTC Advisory - This advisory describes two vulnerabilities in multiple PTC Kepware products.

Yokogawa Advisory - This advisory describes an uncontrolled resource consumption vulnerability in the Yokogawa STARDOM FCN/FCJ controller.

Delta Advisory - This advisory describes a stack-based buffer overflow vulnerability int e Delta DOPSoft product.

 

For more details about these advisories, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/4-advisories-published-11-30-23 - subscription required. 

Saturday, October 21, 2023

Review – Public ICS Disclosures – Week of 10-14-23 – Part 2

For Part 2 we have 43 more vendor disclosures from Moxa, NI, Philips, QNAP, Rockwell Automation, Ruckus Wireless, Synology, Tanzu (31), VMware (2), WAGO, and Yokogawa. We have three vendor updates for products from Broadcom, HPE, and Moxa. Finally, we have two researcher reports for vulnerabilities in products from Synology and Tideworks.

Advisories

Moxa Advisory #1 - Moxa published an advisory that describes eight vulnerabilities in their TN-5900 and TN-4900 Series Web Server.

NI Advisory - NI published an advisory that describes a stack-based buffer overflow vulnerability in their NI System Configuration product.

Philips Advisory - Philips published an advisory that discusses the Cisco IOS XE Software Web UI privilege escalation vulnerability that was recently added to CISA’s Known Exploited Vulnerabilities Catalog.

QNAP Advisory - QNAP published an advisory that describes an OS command injection vulnerability in their QUSBCam2.

Rockwell Advisory - Rockwell published an advisory that discusses Cisco IOS XE Software Web UI privilege escalation vulnerability.

Ruckus Advisory - Ruckus published an advisory that describes a cross-site scripting vulnerability in their Cloudpath product.

Synology Advisory - Synology published an advisory that discusses the HTTP2-Rapid-Reset vulnerability.

Tanzu Advisories - Tanzu published 31 advisories that discuss various third-party vulnerabilities.

VMware Advisory #1 - VMware published an advisory that describes two vulnerabilities in their Aria Operations for Logs product.

VMware Advisory #2 - VMware published an advisory that describes three vulnerabilities in their Workstation Pro/Player.

WAGO Advisory - CERT-VDE published an advisory that describes an externally controlled reference to a resource in another sphere.

Updates

Broadcom Update - Broadcom published an update for their Product Security Incident Response Team Contact Information advisory that was originally published on February 7th, 2023.

HPE Update - PE published an update for their OneView advisory that was originally published on September 14th, 2023.

Moxa Update - Moxa published an update for their TN-5900 and TN-5400 advisory that was originally published August 16th, 2023, and most recently updated on September 4th, 2023.

Reports

Synology Report - Claroty published a report that describes a use of insufficiently random values vulnerability in the Synology DiskStation Manager (DSM).

Tideworks Report - Black Lantern Security published a report that describes two vulnerabilities in the Tideworks Forecast product.

 

For more information about these disclosures, including links to 3rd party advisories, and researcher reports, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-10-22c - subscription required.

Saturday, April 8, 2023

Review – Public ICS Disclosure – Week of 4-1-23

This week we have six vendor disclosures from ABB, Belden, GE Gas Power, Palo Alto Networks, Ruckus Wireless, and Yokogawa. We also have four vendor updates for products from Aruba Networks and CODESYS (3).

Advisories

ABB Advisory - ABB published an advisory that describes an insecure storage of sensitive information in their My Control System (on-premise).

Belden Advisory - Belden published an advisory that describes a privilege escalation vulnerability in their Hirschmann Industrial HiVision product.

GE Advisory – GE Gas Power published an advisory that discusses a path traversal vulnerability in multiple products. This is a third-party (Fortinet) vulnerability.

Palo Alto Networks Advisory - Palo Alto Networks published an advisory that discusses the DLL side loading vulnerability utilized by the Rorschach ransomware.

Ruckus Advisory - Ruckus published an advisory that discusses the  Framing Frames vulnerability.

Yokogawa Advisory - Yokogawa published an advisory that describes an elevation of privilege vulnerability in their CENTUM Authentication Mode.

Updates

Aruba Update - Aruba published an update for their Framing Frames advisory that was originally published on March 30th, 2023.

CODESYS Update #1 - CODESYS published an update for their runtime system V3 communication server advisory that provides additional information that was originally published on February 23rd, 2023 and most recently updated on March 8th, 2023.

CODESYS Update #2 - CODESYS published an update that provides additional information for their Control V3 advisory that was originally published on February 23rd, 2023 and most recently updated on March 8th, 2023.

CODESYS Update #3 - CODESYS published an update that provides additional information for their Control V3 file access advisory that was originally published on February 23rd, 2023 and most recently updated on March 8th, 2023.

Reports

AMD Reports - Binarily published three reports about vulnerabilities in the SMM Driver On AMD-Based Gigabyte Devices.

 

For more details on these disclosures, including links to 3rd party advisories and a brief description of changes made in the updates, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosure-week-of-4-1 - subscription required.

Saturday, October 22, 2022

Review – Public ICS Disclosures – Week of 10-15-22

This week we have fourteen vendor disclosures from Bosch (2), Broadcom, GE Grid Solutions, HP, Meinberg, Milestone, Siemens, SonicWall, Tanzu, TRUMPF, WAGO (2), and Yokogawa Test and Measurement. We also have a vendor update from HPE. Finally, we have an exploit for products from Tanzu.

Bosch Advisory #1 - Bosch published an advisory that discusses an improper validation of integrity check value vulnerability in their Bosch DSA E2800 products.

Bosch Advisory #2 - Bosch published an advisory that describes two cross-site scripting vulnerabilities in their VIDEOJET multi 4000.

Broadcom Advisory - Broadcom published an advisory that discusses the Text4Shell vulnerability.

GE Grid Solutions Advisory - GE Grid Solutions published an advisory that describes vulnerabilities in their MS 3000 Transformers monitoring system.

HP Advisory - HP published an advisory that discusses a PCR measurement vulnerability in multiple HP products.

Meinberg Advisory - Meinberg published an advisory that discusses two vulnerabilities (both with publicly available exploits) in their LANTIME firmware.

Milestone Advisory - Milestone published an advisory that discusses an authentication bypass vulnerability in their Mobile Server.

Siemens Advisory - Siemens published an advisory that describes an authentication bypass vulnerability in their Siveillance Video Mobile Server.

SonicWall Advisory - SonicWall published an advisory that discusses the Text4Shell vulnerability.

Tanzu Advisory #1 - Tanzu published an advisory that describes an HTTP request forgery vulnerability in their Spring Data REST.

Tanzu Advisory #2 - Tanzu published an advisory that describes an information disclosure vulnerability in their Reactor Netty HTTP Server.

TRUMPF Advisory - CERT-VDE published an advisory that describes an improper access control vulnerability in multiple TRUMPF products.

WAGO Advisory #1 - CERT-VDE published an advisory that discusses fourteen vulnerabilities in the WAGO 750 series controllers and WAGO-I/O-PRO.

WAGO Advisory #2 - CERT-VDE published an advisory that describes an expected behavior violation vulnerability in multiple WAGO products.

Yokogawa Advisory - Yokogawa Test and Measurement published an advisory that describes a buffer overflow vulnerability in their WTViewerE.

HPE Update - HPE published an update for their ProLiant Servers advisory that was originally published on May 18th, 2022.

Tanzu Exploit - Ayan Saha published a Metasploit module for a code injection vulnerability in the Tanzu Spring Cloud Gateway.

 

For more details on these disclosures, including links to third-party advisories, researcher reports and exploits, see my article at CFSN Detailed Analysis - https://patrickcoyle.substack.com/p/public-ics-disclosures-week-of-10-1b0 - subscription required.


 
/* Use this with templates/template-twocol.html */