Firma Siemens informuje o nowych podatnościach w swoich produktach oraz aktualizuje starsze biuletyny (P23-198)

cert.pse-online.pl 9 miesięcy temu

8 sierpnia 2023 r. firma Siemens opublikowała zalecenia dotyczące bezpieczeństwa dotyczące luk w zabezpieczeniach wielu produktów.

SSA-9759617.8Privilege Escalation Vulnerabilities in SICAM TOOLBOX II before V07.10
SSA-9325287.8Multiple File Parsing Vulnerabilities in Solid Edge – Uaktualnienie
SSA-9081859.1Mirror Port Isolation Vulnerability in RUGGEDCOM ROS Devices
SSA-8518849.1Authentication Bypass Vulnerability in Mendix SAML Module – Uaktualnienie
SSA-8114037.8Multiple File Parsing Vulnerabilities in Solid Edge before V223 Uaktualnienie 7
SSA-7946979.8Vulnerabilities in the Linux Kernel of the SIMATIC S7-1500 TM MFP V1.0 – Uaktualnienie
SSA-7709027.5Denial of Service Vulnerability in the Web Server of RUGGEDCOM ROS Devices
SSA-7648017.8File Parsing Vulnerabilities in Tecnomatix Plant Simulation – Uaktualnienie
SSA-6917157.8Vulnerability in OPC Foundation Local Discovery Server Affecting Siemens Products – Uaktualnienie
SSA-6869757.9IPU 2022.3 Vulnerabilities in Siemens Industrial Products using Intel CPUs – Uaktualnienie
SSA-4789606.5Missing CSRF Protection in the Web Server Login Page of Industrial Controllers – Uaktualnienie
SSA-4726309.8Security Vulnerabilities Fixed in RUGGEDCOM CROSSBOW V5.4
SSB-439005n/aVulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP – Uaktualnienie
SSA-4077857.8Multiple X_T File Parsing Vulnerabilities in Parasolid and Teamcenter Visualization
SSA-3066548.4Insyde BIOS Vulnerabilities in Siemens Industrial Products
SSA-2648157.4Type Confusion Vulnerability in OpenSSL X.400 Address Processing in SIMATIC Products
SSA-2648145.9Timing Based Side Channel Vulnerability in the OpenSSL RSA Decryption in SIMATIC Products
SSA-2237717.5SISCO Stack Vulnerability in SIPROTEC 5 Devices – Uaktualnienie
SSA-1884917.8DLL Hijacking Vulnerabilities in Siemens Software Center
SSA-1805798.8Privilege Management Vulnerability and Multiple Nucleus RTOS Vulnerabilities in APOGEE/TALON Field Panels before V3.5.5/V2.8.20 – Uaktualnienie
SSA-1314507.8File parsing Vulnerabilities in Solid Edge, JT2Go and Teamcenter Visualization
SSA-1161727.8Nullsoft Scriptable Install System (NSIS) Vulnerability (CVE-2023-37378) in Parasolid Installer
SSA-0015697.8JT File Parsing Vulnerabilities in JT Open, JT Utilities and Parasolid
Idź do oryginalnego materiału