Rewterz
Rewterz Threat Advisory – Omron CX-Supervisor Multiple Vulnerabilities
November 6, 2019
Rewterz
Rewterz Threat Alert – Ransomware Attacks Targeting Spain
November 6, 2019

Rewterz Threat Advisory – CVE-2019-10971 – ICS: Omron Network Configurator for DeviceNet (Update A) Untrusted Search Path Vulnerability

Severity

Medium

Analysis Summary

The application searches for resources by means of an untrusted search path that could execute a malicious .dll file not under the application’s direct control and outside the intended directories.

Impact

Untrusted Search Path

Affected Vendors

Omron

Affected Products

Network Configurator for DeviceNet Safety 3.41 and prior

Remediation

Omron has released Version 3.42 of Network Configurator for DeviceNet Safety to address the reported vulnerability.

latest version of Network Configurator for DeviceNet Safety