If you are responsible for industry control systems or support a organization that uses ICS, please advise them of these vulnerabilities.
CISA released nineteen Industrial Control Systems (ICS) advisories on October 12, 2023. These advisories provide timely information about current security issues, vulnerabilities, and exploits surrounding ICS.
- ICSA-23-285-01 Siemens SIMATIC CP products
- ICSA-23-285-02 Siemens SCALANCE W1750D
- ICSA-23-285-03 Siemens SICAM A8000 Devices
- ICSA-23-285-04 Siemens Xpedition Layout Browser
- ICSA-23-285-05 Siemens Simcenter Amesim
- ICSA-23-285-06 Siemens SICAM PAS/PQS
- ICSA-23-285-07 Siemens RUGGEDCOM APE180
- ICSA-23-285-08 Siemens SINEC NMS
- ICSA-23-285-09 Siemens CPCI85 Firmware of SICAM A8000 Devices
- ICSA-23-285-10 Siemens Tecnomatix Plant Simulation
- ICSA-23-285-11 Siemens Mendix Forgot Password Module
- ICSA-23-285-12 Weintek cMT3000 HMI Web CGI
- ICSA-23-285-13 Mitsubishi Electric MELSEC-F Series
- ICSA-23-285-14 Hikvision Access Control and Intercom Products
- ICSA-23-285-15 Advantech WebAccess
- ICSA-23-285-16 Schneider Electric IGSS
- ICSMA-23-285-01 Santesoft Sante DICOM Viewer Pro
- ICSMA-23-285-02 Santesoft Sante FFT Imaging
- ICSA-23-243-03 PTC Kepware KepServerEX (Update A)
CISA encourages users and administrators to review the newly released ICS advisories for technical details and mitigations.