Summary: On April 22, 2025, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) released five urgent advisories addressing critical vulnerabilities in Industrial Control Systems (ICS) from Siemens, ABB, and Schneider Electric. These advisories highlight severe risks that could lead to data theft, operational disruption, and safety incidents, necessitating immediate attention from security personnel. Organizations are urged to adopt recommended mitigations to safeguard their infrastructures effectively.
Affected: Siemens, ABB, Schneider Electric
Keypoints :
- CISA’s advisories target vulnerabilities in Siemens TeleControl Server, Schneider Electric Wiser Home Controller, ABB MV Drives, and Modicon M580 PLCs.
- Issues include SQL injection, privilege escalation, remote exploits, denial-of-service vulnerabilities, and authentication weaknesses.
- Organizations must apply patches, updates, and enhance security protocols to mitigate risks and protect critical infrastructure.
Source: https://gbhackers.com/cisa-issues-five-ics-advisories/