logo

Software-Based PLC Flaws Enable Windows Box Code Execution

ID: e93ed6c5-f057-592b-95c4-6abd6b102811

STIX ID: report--e93ed6c5-f057-592b-95c4-6abd6b102811

Feed Name: Claroty Team82

Threat Score
75/100

Date Published: 2023-10-30

Date Updated: 2026-04-17

Author: Mashav Sapir

...
...

Claroty/Team82 disclosed multiple critical vulnerabilities in Opto 22 SoftPAC Project (<= 9.6) that allow unauthenticated remote control of the SoftPAC Agent over TCP port 22000, installation of unsigned firmware, zip-slip path traversal resulting in arbitrary SYSTEM file writes, and DLL hijacking to achieve SYSTEM remote code execution; researchers demonstrated a full PoC chain in a lab environment and recommend updating to the latest SoftPAC and restricting access to port 22000 and network segmentation as immediate mitigations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.