Direkt zum Inhalt
IACS RadarIndustrial Cyber Exposure & Intelligence

CISA + Hersteller

ICS-Advisories

Advisories speziell für industrielle Steuerungssysteme — von CISA ICS-CERT und direkt von Herstellern (Siemens ProductCERT, ABB PSIRT) — einschließlich Revisionshistorie (Erstveröffentlichung, Update A, Update B) und verknüpfter CVEs.

8

Gefunden

Advisory-Daten: Live-Anbindung— zuletzt abgerufen: 24. September 2026 um 06:11.

8 Advisories gefunden

ICSA-26-202-09

Rockwell Automation 1734 POINT I/O (Update A)

Rockwell Automation1734 POINT I/O

CISAniedrig

Veröffentlicht

21. Juli 2026

Letzte Aktualisierung

1. September 2026

Verknüpfte CVEs

Betroffene Sektoren

Risk Evaluation

Successful exploitation of this vulnerability could allow for an attacker to cause a denial-of-service condition on the product.

Zusammenfassung der Gegenmaßnahmen

Rockwell Automation recommends users are to migrate to 5034-OB8.

Revisionshistorie (2)
  1. Erstveröffentlichung21. Juli 2026

    Initial Republication of Rockwell Automation Security Advisory

  2. Update A1. September 2026

    Update A - Updated impact statement and CVSS scores.

Offizielle Quelle: CISA

ICSA-26-211-05

Rockwell Automation CompactLogix 5380 ControlLogix 5580 / 1756-EN4TR Communications Module

Rockwell AutomationControlLogix 5580

CISAmiddel

Veröffentlicht

30. Juli 2026

Letzte Aktualisierung

30. Juli 2026

Verknüpfte CVEs

Betroffene Sektoren

Risk Evaluation

Successful exploitation of this vulnerability could allow an attacker to cause a denial-of-service condition.

Zusammenfassung der Gegenmaßnahmen

Rockwell Automation recommend users update to the following versions: ControlLogix 5580: Update to V38.011

Revisionshistorie (1)
  1. Erstveröffentlichung30. Juli 2026

    Initial Publication

Offizielle Quelle: CISA

ICSA-26-204-05

Rockwell Automation ThinManager

Rockwell AutomationThinManager

CISAhoch

Veröffentlicht

14. Juli 2026

Letzte Aktualisierung

23. Juli 2026

Verknüpfte CVEs

Betroffene Sektoren

Risk Evaluation

Successful exploitation of this vulnerability could allow an authenticated attacker to write arbitrary files to restricted system directories outside of the application's intended directory.

Zusammenfassung der Gegenmaßnahmen

Users using the affected software, should upgrade to one of the corrected versions as follows:

Revisionshistorie (2)
  1. Erstveröffentlichung14. Juli 2026

    Initial Publication by Rockwell Automation

  2. Update A23. Juli 2026

    Initial Republication of Rockwell Automation advisory

Offizielle Quelle: CISA

ICSA-26-202-10

Rockwell Automation Studio 5000 Logix Designer

Rockwell AutomationStudio 5000 Logix Designer

CISAhoch

Veröffentlicht

21. Juli 2026

Letzte Aktualisierung

21. Juli 2026

Betroffene Sektoren

Risk Evaluation

Successful exploitation of these vulnerabilities could allow for a local attacker to execute arbitrary files, alter configurations, or execute arbitrary code.

Zusammenfassung der Gegenmaßnahmen

Rockwell Automation recommends users to upgrade to the following: Studio 5000 Logix Designer: V37.00, 36.01, 35.02, 34.04, 33.04, 32.05 (CVE-2026-9108)

Revisionshistorie (1)
  1. Erstveröffentlichung21. Juli 2026

    Initial Republication of Rockwell Automation Security Advisory

Offizielle Quelle: CISA

ICSA-26-202-08

Rockwell Automation 1718-AENTR/1719-AENTR

Rockwell Automation1718/ 1719 Ex I/O

CISAhoch

Veröffentlicht

21. Juli 2026

Letzte Aktualisierung

21. Juli 2026

Verknüpfte CVEs

Betroffene Sektoren

Risk Evaluation

Successful exploitation of this vulnerability could allow for an attacker to cause a denial-of-service condition on the product.

Zusammenfassung der Gegenmaßnahmen

Rockwell Automation recommends users to upgrade to 1718/ 1719 Ex I/O version 3.012 or later.

Revisionshistorie (1)
  1. Erstveröffentlichung21. Juli 2026

    Initial Republication of Rockwell Automation Security Advisory

Offizielle Quelle: CISA

ICSA-26-202-07

Rockwell Automation FactoryTalk Services Platform

Rockwell AutomationFactoryTalk Directory (FTSP)

CISAhoch

Veröffentlicht

21. Juli 2026

Letzte Aktualisierung

21. Juli 2026

Verknüpfte CVEs

Betroffene Sektoren

Risk Evaluation

Successful exploitation of this vulnerability could allow an attacker to impersonate an authorized user on the FTSP server, resulting in unauthorized access to system configurations.

Zusammenfassung der Gegenmaßnahmen

Users using FactoryTalk Services Platform v6.60 should apply either the individual patch (RAID 1158263) or the February 2026 Patch Roll-up, or later update.

Revisionshistorie (1)
  1. Erstveröffentlichung21. Juli 2026

    Initial Republication of Rockwell Automation SD1786

Offizielle Quelle: CISA

ICSA-26-197-09

Rockwell Automation FactoryTalk DataMosaix

Rockwell AutomationDataMosaix Private Cloud

CISAmiddel

Veröffentlicht

16. Juli 2026

Letzte Aktualisierung

16. Juli 2026

Verknüpfte CVEs

Betroffene Sektoren

Risk Evaluation

Successful exploitation of this vulnerability could allow an authenticated attacker to inject malicious scripts on the server.

Zusammenfassung der Gegenmaßnahmen

Rockwell Automation recommends users to upgrade to the following: DataMosaix Private Cloud versions 8.03 or later.

Revisionshistorie (1)
  1. Erstveröffentlichung16. Juli 2026

    Initial Republication of Rockwell Automation Security Advisory SD1787

Offizielle Quelle: CISA

ICSA-26-197-08

Rockwell Automation Flex 5000 Adapter

Rockwell AutomationFlex 5000 Adapter

CISAhoch

Veröffentlicht

16. Juli 2026

Letzte Aktualisierung

16. Juli 2026

Verknüpfte CVEs

Betroffene Sektoren

Risk Evaluation

Successful exploitation of this vulnerability could allow an attacker to cause a denial-of-service condition on the affected product.

Zusammenfassung der Gegenmaßnahmen

Rockwell Automation recommends users to upgrade to the following: Flex 5000 Adapter version 6.012.

Revisionshistorie (1)
  1. Erstveröffentlichung16. Juli 2026

    Initial Republication of Rockwell Automation Security Advisory SD1789

Offizielle Quelle: CISA