OT Operators Slow to Update Vulnerable Remote Access Devices
ID: c6b25145-708a-5a89-9e11-2972f84a5356
STIX ID: report--c6b25145-708a-5a89-9e11-2972f84a5356
Feed Name: Claroty Team82
Team82/Claroty analysed four critical vulnerabilities in Secomea GateManager remote-access VPNs (including RCE, off-by-one overwrite, hard-coded telnet credentials, and weak password hashing). Although Secomea issued a patched release (9.2c) and CISA published mitigations, claroty found that over 61% of publicly exposed GateManager instances remained unpatched, creating a significant risk to OT environments that could allow attackers unauthenticated access to field devices and the ability to decrypt VPN traffic.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
