EcoStruxure IT Gateway Security Notification (CVE-2024-10575)
This document details a critical missing authorization vulnerability (CVE-2024-10575) in EcoStruxure™ IT Gateway versions 1.21.0.6, 1.22.0.3, 1.22.1.5, and 1.23.0.4, which could allow unauthorized network access and control of the Gateway or retrieval of sensitive information. The recommended remediation is to update to version 1.23.1.10, with additional mitigations including network isolation and firewall implementation for those who cannot apply the fix immediately.
Failed to load PDF
Download insteadYou might also like
EcoStruxure Building Operation Enterprise Central Overview
6 pages
GKD 2001VT CO2 and Temperature Sensor Datasheet
4 pages
HVAC Sensor and Controller Types
1 pages
TAC Vista 5 Webstation User Guide
3 pages
VB601R 6-Port Motorized Ball Valve Specification Sheet
8 pages
Trihal Cast Resin Transformers Electrical Characteristics
4 pages
C60H-DC Acti 9 DC Circuit Breaker Application Guide
4 pages
EcoStruxure Foxboro DCS Alarm Shelving Utility Specification
7 pages
Electric Motors Control and Protection Technical Guide
25 pages
146S Safety Shroud Product Data Sheet
1 pages