EcoStruxure IT Gateway Security Notification (CVE-2024-10575)
This document details a critical missing authorization vulnerability (CVE-2024-10575) in EcoStruxure™ IT Gateway versions 1.21.0.6, 1.22.0.3, 1.22.1.5, and 1.23.0.4, which could allow unauthorized network access and control of the Gateway or retrieval of sensitive information. The recommended remediation is to update to version 1.23.1.10, with additional mitigations including network isolation and firewall implementation for those who cannot apply the fix immediately.
Failed to load PDF
Download insteadYou might also like
Altivar Process ATV680 Low Harmonic Drive System Technical Specifications
4 pages
Satchwell Linkage Kits for AR Mk 7 Actuators Installation Instructions
4 pages
SpaceLogic RS-485 Adapters Installation Guide
10 pages
Satchwell MZ, MZF, MJF Three-Port Seat Valves Specification
4 pages
STD400 Series Duct Average Temperature Transmitter Specification Sheet
2 pages
EVlink Pro DC / Schneider StarCharge Fast Modbus Connectivity Guide
15 pages
TAC Xenta 913 Protocol Gateway
4 pages
APC and Microsoft Windows Built-In UPS Support Application Note
9 pages
SpaceLogic CRS-HH-REL-10 10-Channel Relay Module Manual
6 pages
TAC Xenta 401:B Freely Programmable Controller Technical Specifications
4 pages