EcoStruxure Control Expert, Process Expert, and Modicon PLC Security Notification
This document notifies users of multiple high-severity vulnerabilities (CVE-2023-27975, CVE-2023-6408, CVE-2023-6409) affecting EcoStruxure Control Expert, EcoStruxure Process Expert, and Modicon M340, M580, and M580 Safety PLCs, which could lead to denial of service, unauthorized access, and loss of confidentiality or integrity. It provides affected product versions, remediation steps including firmware updates (e.g., SV3.60, SV4.20, SV4.21) and software patches (e.g., Control Expert v16.0, Process Expert v2023), and details on man-in-the-middle attacks, hard-coded credentials, and insufficiently protected credentials.
Failed to load PDF
Download insteadYou might also like
Geo SCADA Expert 2021 Release Notes – August 2022 Update
55 pages
RTD-DI-16 16-Channel I/O Module Manual
5 pages
EcoStruxure BMS and SpaceLogic WebHelp System Guide
9 pages
Satchwell SNP Interface Manual
4 pages
STR100-STR106 Room Sensor Specification Sheet
2 pages
EasyLobby Mobile Visitor Management Solutions
1 pages
Modicon M221 Analogue Input Cartridge TMC2AI2
3 pages
UI-8/AO-V-4 SmartX Controller I/O Module Manual
6 pages
STD300 Duct Temperature Transmitter Specification Sheet
2 pages
SDC 30-4 Series Electric Strike Manual
1 pages