Direct naar inhoud
IACS RadarIndustrial Cyber Exposure & Intelligence

CISA + leveranciers

ICS Advisories

Advisories specifiek gericht op industriële besturingssystemen — van CISA ICS-CERT en rechtstreeks van leveranciers (Siemens ProductCERT, ABB PSIRT) — inclusief revisiegeschiedenis (initiële publicatie, Update A, Update B) en gekoppelde CVE's.

8

Gevonden

Advisorydata: live koppeling— laatst opgehaald: 24 september 2026 om 05:15.

Filters

1 actief
Reset filters

8 advisories gevonden

ICSA-26-202-09

Rockwell Automation 1734 POINT I/O (Update A)

Rockwell Automation1734 POINT I/O

CISAlaag

Gepubliceerd

21 juli 2026

Laatste update

1 september 2026

Gekoppelde CVE's

Getroffen sectoren

Risk evaluation

Successful exploitation of this vulnerability could allow for an attacker to cause a denial-of-service condition on the product.

Mitigatiesamenvatting

Rockwell Automation recommends users are to migrate to 5034-OB8.

Revisiegeschiedenis (2)
  1. Initiële publicatie21 juli 2026

    Initial Republication of Rockwell Automation Security Advisory

  2. Update A1 september 2026

    Update A - Updated impact statement and CVSS scores.

Officiële bron: CISA

ICSA-26-211-05

Rockwell Automation CompactLogix 5380 ControlLogix 5580 / 1756-EN4TR Communications Module

Rockwell AutomationControlLogix 5580

CISAmiddel

Gepubliceerd

30 juli 2026

Laatste update

30 juli 2026

Gekoppelde CVE's

Getroffen sectoren

Risk evaluation

Successful exploitation of this vulnerability could allow an attacker to cause a denial-of-service condition.

Mitigatiesamenvatting

Rockwell Automation recommend users update to the following versions: ControlLogix 5580: Update to V38.011

Revisiegeschiedenis (1)
  1. Initiële publicatie30 juli 2026

    Initial Publication

Officiële bron: CISA

ICSA-26-204-05

Rockwell Automation ThinManager

Rockwell AutomationThinManager

CISAhoog

Gepubliceerd

14 juli 2026

Laatste update

23 juli 2026

Gekoppelde CVE's

Getroffen sectoren

Risk evaluation

Successful exploitation of this vulnerability could allow an authenticated attacker to write arbitrary files to restricted system directories outside of the application's intended directory.

Mitigatiesamenvatting

Users using the affected software, should upgrade to one of the corrected versions as follows:

Revisiegeschiedenis (2)
  1. Initiële publicatie14 juli 2026

    Initial Publication by Rockwell Automation

  2. Update A23 juli 2026

    Initial Republication of Rockwell Automation advisory

Officiële bron: CISA

ICSA-26-202-10

Rockwell Automation Studio 5000 Logix Designer

Rockwell AutomationStudio 5000 Logix Designer

CISAhoog

Gepubliceerd

21 juli 2026

Laatste update

21 juli 2026

Getroffen sectoren

Risk evaluation

Successful exploitation of these vulnerabilities could allow for a local attacker to execute arbitrary files, alter configurations, or execute arbitrary code.

Mitigatiesamenvatting

Rockwell Automation recommends users to upgrade to the following: Studio 5000 Logix Designer: V37.00, 36.01, 35.02, 34.04, 33.04, 32.05 (CVE-2026-9108)

Revisiegeschiedenis (1)
  1. Initiële publicatie21 juli 2026

    Initial Republication of Rockwell Automation Security Advisory

Officiële bron: CISA

ICSA-26-202-08

Rockwell Automation 1718-AENTR/1719-AENTR

Rockwell Automation1718/ 1719 Ex I/O

CISAhoog

Gepubliceerd

21 juli 2026

Laatste update

21 juli 2026

Gekoppelde CVE's

Getroffen sectoren

Risk evaluation

Successful exploitation of this vulnerability could allow for an attacker to cause a denial-of-service condition on the product.

Mitigatiesamenvatting

Rockwell Automation recommends users to upgrade to 1718/ 1719 Ex I/O version 3.012 or later.

Revisiegeschiedenis (1)
  1. Initiële publicatie21 juli 2026

    Initial Republication of Rockwell Automation Security Advisory

Officiële bron: CISA

ICSA-26-202-07

Rockwell Automation FactoryTalk Services Platform

Rockwell AutomationFactoryTalk Directory (FTSP)

CISAhoog

Gepubliceerd

21 juli 2026

Laatste update

21 juli 2026

Gekoppelde CVE's

Getroffen sectoren

Risk evaluation

Successful exploitation of this vulnerability could allow an attacker to impersonate an authorized user on the FTSP server, resulting in unauthorized access to system configurations.

Mitigatiesamenvatting

Users using FactoryTalk Services Platform v6.60 should apply either the individual patch (RAID 1158263) or the February 2026 Patch Roll-up, or later update.

Revisiegeschiedenis (1)
  1. Initiële publicatie21 juli 2026

    Initial Republication of Rockwell Automation SD1786

Officiële bron: CISA

ICSA-26-197-09

Rockwell Automation FactoryTalk DataMosaix

Rockwell AutomationDataMosaix Private Cloud

CISAmiddel

Gepubliceerd

16 juli 2026

Laatste update

16 juli 2026

Gekoppelde CVE's

Getroffen sectoren

Risk evaluation

Successful exploitation of this vulnerability could allow an authenticated attacker to inject malicious scripts on the server.

Mitigatiesamenvatting

Rockwell Automation recommends users to upgrade to the following: DataMosaix Private Cloud versions 8.03 or later.

Revisiegeschiedenis (1)
  1. Initiële publicatie16 juli 2026

    Initial Republication of Rockwell Automation Security Advisory SD1787

Officiële bron: CISA

ICSA-26-197-08

Rockwell Automation Flex 5000 Adapter

Rockwell AutomationFlex 5000 Adapter

CISAhoog

Gepubliceerd

16 juli 2026

Laatste update

16 juli 2026

Gekoppelde CVE's

Getroffen sectoren

Risk evaluation

Successful exploitation of this vulnerability could allow an attacker to cause a denial-of-service condition on the affected product.

Mitigatiesamenvatting

Rockwell Automation recommends users to upgrade to the following: Flex 5000 Adapter version 6.012.

Revisiegeschiedenis (1)
  1. Initiële publicatie16 juli 2026

    Initial Republication of Rockwell Automation Security Advisory SD1789

Officiële bron: CISA