Rewterz
Rewterz Threat Alert – Nerbian RAT Distributed by Magnet Goblin Threat Group by Abusing 1-Day Exploits – Active IOCs
March 13, 2024
Rewterz
Rewterz Threat Alert – JetBrains TeamCity Vulnerabilities Exploited in BianLian Ransomware Attacks – Active IOCs
March 13, 2024

Rewterz Threat Advisory – ICS: Schneider Electric EcoStruxure Power Design Vulnerability

Severity

High

Analysis Summary

CVE-2024-2229

Schneider Electric EcoStruxure Power Design could allow a local attacker to execute arbitrary code on the system. By using a specially crafted file, an attacker could exploit this vulnerability to execute arbitrary code on the system.

Impact

  • Code Execution

Indicators Of Compromise

CVE

  • CVE-2024-2229

Affected Vendors

Schneider Electric

Affected Products

  • Schneider Electric EcoStruxure Power Design – Ecodial NL
  • Schneider Electric EcoStruxure Power Design – Ecodial INT
  • Schneider Electric EcoStruxure Power Design – Ecodial FR

Remediation

Refer to Schneider Electric Website for patch, upgrade or suggested workaround information.

Schneider Electric Website