Security Warnings

Classification
These posts contain security warnings, including digital loopholes, electronic attacks, technical updates, and they are classified base on the level of severity.

Critical

High

Medium

Low

Rockwell Automation Updates

52

Warning Date: 9 June, 2021

Severity Level ● Critical

Warning Number: 2021-3027

Target Sector: Energy - Water and Utilities - Manufacturing

Description:

Thales Rockwell Automation has released an update to address a vulnerability in the following product:

  • AADvance Controller
    • version 1.40 and earlier
  • ISaGRAF Free Runtime in ISaGRAF6 Workbench
    • Version 6.6.8 and earlier
  • Micro800 family
    • all versions

Threats:

An attacker could exploit this vulnerability by :

  • Execute arbitrary code.
  • Sensitive information disclosure
  • Directory Traversal

Best practice and Recommendations:

The CERT team encourages to update and check the affected product details according to the link below:

Last updated at 9 June, 2021