CISA Warns of Critical ICS Flaws in Siemens, Tigo Energy, and EG4 Equipment

CISA Warns of Critical ICS Flaws in Siemens, Tigo Energy, and EG4 Equipment

US cybersecurity agency CISA has issued advisories on vulnerabilities affecting Siemens, Tigo Energy, and EG4 Electronics ICS equipment. These vulnerabilities include privilege escalation, cryptographic hijacking, hard-coded credentials, and data transmission risks, urging organizations to update and isolate affected systems. #SiemensDesigo #TigoEnergyCCA #EG4Inverters

Keypoints

  • CISA released advisories for vulnerabilities in Siemens, Tigo Energy, and EG4 Electronics industrial control systems.
  • Siemens Desigo CC and SENTRON Powermanager are affected by privilege escalation vulnerabilities in CodeMeter software.
  • Tigo Energy’s Cloud Connect Advanced faces critical risks due to hard-coded credentials and command injection flaws.
  • EG4 Electronics inverter systems contain multiple security issues, including data exposure and improper authentication limits.
  • CISA recommends network isolation, software updates, and risk assessments to mitigate these industrial control system vulnerabilities.

Read More: https://thecyberexpress.com/cisa-warns-of-ics-vulnerabilities/