Rewterz

Rewterz Threat Advisory – CVE-2021-27657 – ICS: Johnson Controls Metasys

June 9, 2021
Rewterz

Rewterz Threat Advisory – CVE-2021-27610 – Critical Vulnerability in SAP ABAP Server

June 9, 2021

Rewterz Threat Advisory – CVE-2021-22749 – ICS: Schneider Electric Modicon X80

Severity

Medium

Analysis Summary

CVE-2021-22749

This vulnerability could cause an information leak concerning the current RTU configuration including communication parameters dedicated to telemetry when a specially crafted HTTP request is sent to the webserver of the module. Successful exploitation of this vulnerability may result in an information disclosure to an unauthenticated remote user, which could result in an understanding of the network architecture.

Impact

  • Information Disclosure

Affected Vendors

Schneider Electric

Affected Products

  • Modicon X80 BMXNOR0200H RTU SV1.70 IR22 and prior

Remediation

Refer to vendor advisory for the complete list of affected products and their respective patches at https://us-cert.cisa.gov/ics/advisories/icsa-21-159-05

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.