CISA Warns of Unpatched Avation & RISS Critical Flaws
ID: 0d015a9a-6096-5009-b181-25ddd7a1f466
STIX ID: report--0d015a9a-6096-5009-b181-25ddd7a1f466
Feed Name: securityonline.info
Threat Score
CISA warns of two critical, unpatched vulnerabilities in OT devices—Avation Light Engine Pro (CVE-2026-1341, CVSS 9.8) and RISS SRL MOMA Seismic Station (CVE-2026-1632, CVSS 9.1)—which expose web/configuration interfaces without authentication, allowing unauthenticated attackers to take full control or disrupt/disable monitoring; both vendors did not respond to coordination requests and users are advised to isolate affected devices behind strict firewalls and VPNs.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
