logo

Privileged File System Vulnerability Present in a SCADA System

ID: 77a1f998-66e2-5fb4-afee-7f05079faca0

STIX ID: report--77a1f998-66e2-5fb4-afee-7f05079faca0

Feed Name: Palo Alto Networks Unit 42

Threat Score
60/100

Date Published: 2026-01-30

Date Updated: 2026-04-28

Author: Asher Davila and Malav Vyas

...
...

This Unit42 report analyzes CVE-2025-0921 in Iconics GENESIS64 (Iconics Suite), a privileged file-system-operations vulnerability that can let a local non-administrative user, especially when combined with CVE-2024-7587 which grants write access to C:\ProgramData\ICONICS, create symbolic links to redirect application log writes and overwrite critical binaries (demonstrated against cng.sys), resulting in a denial-of-service (failed boot) on affected Windows OT engineering workstations; the report includes step-by-step reproduction, screenshots, vendor advisory links, and mitigation recommendations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.