SCADA Vulnerability Triggers DoS, Potentially Disrupting Industrial Operations
ID: c461230c-1693-5275-9a9f-8dd89f382321
STIX ID: report--c461230c-1693-5275-9a9f-8dd89f382321
Feed Name: cybersecurityNews.com
**CVE-2025-0921** is an execution-with-unnecessary-privileges vulnerability in Mitsubishi Electric Iconics GENESIS64, MC Works64, and GENESIS that allows local attackers to manipulate the SMSLogFile path and create symbolic links to overwrite critical Windows drivers (e.g., cng.sys), leading to boot failures and denial-of-service for OT workstations; the flaw (CVSS 6.5) was disclosed by Unit 42, impacts widely deployed ICS/SCADA installations, and patches or mitigations are available for some product versions while others remain unpatched.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
