MiCOM S1 Studio Vulnerability Disclosure
This document discloses a vulnerability in Schneider Electric's MiCOM S1 Studio software (up to version 3.5.2), where the installer grants read/write access to executables, allowing local users to manipulate configuration files and Windows services, potentially leading to privilege escalation or misoperation of protective relays. Mitigations include using best IT practices, User Access Control (UAC), and upgrading to version 5.0.0, which resolves the issue with digital signatures, read-only privileges, and compiler security settings.
Failed to load PDF
Download insteadYou might also like
EcoFit Life Extension Advanced for Sepam Series 20 with P5 Service Description
2 pages
MasterPacT MTZ MicroLogic Xi Control Unit Technical Overview
6 pages
Satchwell CSC Compensator Specification and Installation Guide
16 pages
EnergyView Online Remote Energy Monitoring Service
1 pages
SEP6 Metered Rack PDU Specifications
2 pages
Modicon Quantum Credentials Management Vulnerability Security Notification
4 pages
DuoProx II Multiple Technology Card Datasheet
2 pages
MZ09L and MZ09B Zone Valve Actuators Specification Sheet
10 pages
Triconex TriStation Emulator Security Notification
3 pages
SpaceLogic Sensors Selection Guide
19 pages