SpaceLogic AS-P and AS-B Automation Servers Security Notification
This document details multiple vulnerabilities in Schneider Electric's SpaceLogic AS-P and AS-B automation servers, including a TOCTOU race condition (CVE-2024-5558) that could lead to privilege escalation and an information exposure flaw (CVE-2024-5557) that risks leaking SNMP credentials. It provides remediation steps, including upgrading to version 6.0.1 or applying hotfix patches, along with general cybersecurity best practices for building management systems.
Failed to load PDF
Download insteadYou might also like
Modicon M221 Logic Controller TM221CE16R
18 pages
Geo SCADA Expert 2019 Release Notes
48 pages
AO-8 and AO-8-H Analog Output I/O Modules Manual
5 pages
APC UPS Integration with NetApp FAS Application Note
3 pages
29450 Standard Auxiliary Contact Launch Notice
8 pages
AP7557NA Basic Rack PDU Specifications
2 pages
PlantStruxure Cybersecurity Solutions for Critical Infrastructure
31 pages
DIGHRL and DUGHRL Room Humidity Transmitter Technical Data and Installation Guide
2 pages
Fuzzy Logic in Schneider Programmable Controllers Cahier Technique
32 pages
Altivar Process MultiDrive Systems Handbook
176 pages