Hacking ICS/OT Data Historians: The Pivot Point
ID: 4fd97d26-74ba-5ac6-9f0f-2b43df26bc4a
STIX ID: report--4fd97d26-74ba-5ac6-9f0f-2b43df26bc4a
Feed Name: Claroty Team82
Threat Score
Team82 discovered and disclosed five vulnerabilities in GE Proficy Historian (v7.0+), including an authentication bypass (CVE-2022-46732, CVSS 9.8) and file read/write/delete primitives that can be chained to achieve unauthenticated remote code execution as SYSTEM; GE released fixes in Proficy Historian 2023 and users are urged to update.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
