Claroty Uncovers Vulnerabilities in Ovarro's TBox RTUs
ID: 5d07e354-8d93-513f-acdf-03bdea001b39
STIX ID: report--5d07e354-8d93-513f-acdf-03bdea001b39
Feed Name: Claroty Team82
Claroty researchers discovered multiple critical vulnerabilities in Ovarro's TBox RTUs and TWinSoft engineering software that allowed remote code execution (via manipulated ipk update packages), file read/modify/delete, denial-of-service, memory corruption, and credential/key weaknesses; many devices were found internet-exposed and largely unauthenticated. Ovarro released patches (TBox 1.46, TWinSoft 12.4) and ICS-CERT/CISA published advisories and mitigation guidance; users are urged to update, isolate control networks, and minimize internet exposure.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
