Rewterz

Rewterz Threat Advisory – ICS: Moxa MXview Network Management Software

October 6, 2021
Rewterz

Rewterz Threat Advisory – Multiple Cisco Products Vulnerabilities

October 7, 2021

Rewterz Threat Advisory – ICS: Honeywell Experion PKS and ACE Controllers

Severity

High

Analysis Summary

CVE-2021-38397

The affected product is vulnerable to unrestricted file uploads, which may allow an attacker to remotely execute arbitrary code and cause a denial-of-service condition.

CVE-2021-38395 

The affected product is vulnerable to improper neutralization of special elements in output, which may allow an attacker to remotely execute arbitrary code and cause a denial-of-service condition.

CVE-2021-38399

The affected product is vulnerable to relative path traversal, which may allow an attacker access to unauthorized files and directories.

Impact

  • Remote Code Execution
  • Denial of Service

Affected Vendors

  • Honeywell

Affected Products

  • C200: All versions
  • C200E: All versions
  • C300 and ACE controllers: All versions

Remediation

Refer to US-CERT Advisory for patch, upgrade, or suggested workaround information.

https://us-cert.cisa.gov/ics/advisories/icsa-21-278-04

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.