logo

CISA Warns of Unpatched Avation & RISS Critical Flaws

ID: 0d015a9a-6096-5009-b181-25ddd7a1f466

STIX ID: report--0d015a9a-6096-5009-b181-25ddd7a1f466

Feed Name: securityonline.info

Threat Score
75/100

Date Published: 2026-02-05

Date Updated: 2026-04-23

Author: Ddos

...
...

CISA warns of two critical, unpatched vulnerabilities in OT devices—Avation Light Engine Pro (CVE-2026-1341, CVSS 9.8) and RISS SRL MOMA Seismic Station (CVE-2026-1632, CVSS 9.1)—which expose web/configuration interfaces without authentication, allowing unauthenticated attackers to take full control or disrupt/disable monitoring; both vendors did not respond to coordination requests and users are advised to isolate affected devices behind strict firewalls and VPNs.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.