Security
Headlines
HeadlinesLatestCVEs

Source

us-cert

Inductive Automation Ignition

This advisory contains mitigations for an Improper Restriction of XML External Entity Reference vulnerability in versions of Inductive Automation Ignition software.

us-cert
#vulnerability
AutomationDirect Stride Field I/O

This advisory contains mitigations for an Cleartext Transmission of Sensitive Information vulnerability in AutomationDirect products.

ICONICS Suite and Mitsubishi Electric MC Works64 Products

This advisory contains mitigations for an Path Traversal, Deserialization of Untrusted Data, Inclusion of Functionality from Untrusted Control Sphere, Out-of-Bounds Read vulnerabilities in the SCADA products.

Rockwell Automation ISaGRAF Update A

This updated advisory is a follow-up to the original advisory titled Rockwell Automation ISaGRAF that was published March 29, 2022, on the ICS webpage on cisa.gov/ics. This advisory contains mitigations for an Improper Restriction of XML External Entity Reference vulnerability in Rockwell Automation ISaGRAF software products.

Rockwell Automation ISaGRAF Workbench

This advisory contains mitigations for a Missing Authentication for Critical Function vulnerability in the ISaGRAF Workbench.

Johnson Controls Metasys ADS, ADX, OAS

This advisory contains mitigations for an Missing Authentication for Critical Function vulnerability in the Metasys ADS, ADX, OAS.

ABB Drive Composer, Automation Builder, Mint Workbench

This advisory contains mitigations for an Improper Privilege Management vulnerabilities in the ABB products.

MiCODUS MV720 GPS tracker

This advisory contains mitigations for Use of Hard-coded Credentials, Improper Authentication, Cross-site Scripting, and Authorization Bypass Through User-controlled Key vulnerabilities in the MiCODUS MV720 GPS tracker.

Siemens SCALANCE X Switch Devices

This advisory contains mitigations for Use of Insufficiently Random Values, and Classic Buffer Overflow vulnerabilities in the Siemens SCALANCE X Switch Devices industrial ethernet switches.

Siemens SICAM GridEdge

This advisory contains mitigations for an Exposure of Resource to Wrong Sphere vulnerability in Siemens SICAM GridEdge.