Stay connected

Trending News

Cisco Application Policy Infrastructure Controller Vulnerabilities
Critical vulnerabiliities, IoT Security, News, Vulnerabilities

Cisco Application Policy Infrastructure Controller Vulnerabilities 

Summary Multiple vulnerabilities in Cisco Application Policy Infrastructure Controller (APIC) could allow an authenticated attacker to access sensitive information, execute arbitrary commands, cause a denial of service (DoS) condition, or perform cross-site scripting (XSS) attacks. To exploit these vulnerabilities, the attacker must have valid administrative…

Siemens SIPROTEC 5 Devices
ICS, News, Vulnerabilities

Siemens SIPROTEC 5 Devices 

1. EXECUTIVE SUMMARY 2. RISK EVALUATION Successful exploitation of this vulnerability could allow an unauthenticated, remote attacker to retrieve sensitive information of the device. 3. TECHNICAL DETAILS 3.1 AFFECTED PRODUCTS Siemens reports that the following products are affected: 3.2 VULNERABILITY OVERVIEW 3.2.1 USE OF DEFAULT CREDENTIALS…

Hitachi Energy RTU500 Series Product
ICS, News, Vulnerabilities

Schneider Electric Easergy Studio 

1. EXECUTIVE SUMMARY 2. RISK EVALUATION Successful exploitation of this vulnerability may risk unauthorized access to the installation directory for Easergy Studio, which could allow an attacker with access to the file system to elevate privileges. 3. TECHNICAL DETAILS 3.1 AFFECTED PRODUCTS Schneider Electric reports…

Hitachi Energy RTU500 Series Product
ICS, News, Vulnerabilities

Hitachi Energy RTU500 Series Product 

1. EXECUTIVE SUMMARY 2. RISK EVALUATION Successful exploitation of this vulnerability could allow an attacker to to update the RTU500 with unsigned firmware. 3. TECHNICAL DETAILS 3.1 AFFECTED PRODUCTS Hitachi Energy reports that the following RTU500 series products are affected: 3.2 VULNERABILITY OVERVIEW 3.2.1 IMPROPERLY IMPLEMENTED…

mySCADA myPRO Manager
ICS, News, Vulnerabilities

mySCADA myPRO Manager 

1. EXECUTIVE SUMMARY 2. RISK EVALUATION Successful exploitation of these vulnerabilities could allow a remote attacker to execute arbitrary commands or disclose sensitive information. 3. TECHNICAL DETAILS 3.1 AFFECTED PRODUCTS The following mySCADA products are affected: 3.2 VULNERABILITY OVERVIEW 3.2.1 Improper Neutralization of Special Elements used…

ZF Roll Stability Support Plus (RSSPlus)
News, Vulnerabilities

ZF Roll Stability Support Plus (RSSPlus) 

1. EXECUTIVE SUMMARY 2. RISK EVALUATION Successful exploitation of this vulnerability could allow an unauthenticated attacker to remotely (proximal/adjacent with RF equipment) call diagnostic functions which could impact both the availability and integrity. 3. TECHNICAL DETAILS 3.1 AFFECTED PRODUCTS The following versions of RSSPlus are…